Re: [Uta] opportunistic keying / encryption considered of dubious value

Alyssa Rowan <akr@akr.io> Mon, 17 March 2014 14:35 UTC

Return-Path: <akr@akr.io>
X-Original-To: uta@ietfa.amsl.com
Delivered-To: uta@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6C2641A017E for <uta@ietfa.amsl.com>; Mon, 17 Mar 2014 07:35:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.902
X-Spam-Level:
X-Spam-Status: No, score=-1.902 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tTviItYkQ09Y for <uta@ietfa.amsl.com>; Mon, 17 Mar 2014 07:35:22 -0700 (PDT)
Received: from entima.net (entima.net [78.129.143.175]) by ietfa.amsl.com (Postfix) with ESMTP id DEB9F1A0125 for <uta@ietf.org>; Mon, 17 Mar 2014 07:35:21 -0700 (PDT)
Received: from [10.113.169.78] (94.197.120.48.threembb.co.uk [94.197.120.48]) by entima.net (Postfix) with ESMTPSA id 645BF60AA6; Mon, 17 Mar 2014 14:35:12 +0000 (GMT)
User-Agent: K-9 Mail for Android
In-Reply-To: <141764D8-8081-440F-BB6B-8C514242E4E4@edvina.net>
References: <53249D4E.2080104@network-heretics.com> <5324ECFC.2050004@akr.io> <53256D07.7020005@network-heretics.com> <5325AEB2.9070804@mnt.se> <5325B3E7.3060508@network-heretics.com> <064230ec-a48b-404c-a2c9-ee07436d73fc@email.android.com> <141764D8-8081-440F-BB6B-8C514242E4E4@edvina.net>
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
Content-Type: text/plain; charset="UTF-8"
From: Alyssa Rowan <akr@akr.io>
Date: Mon, 17 Mar 2014 14:35:09 +0000
To: "Olle E. Johansson" <oej@edvina.net>
Message-ID: <ca8f2a08-d341-46c6-8f79-be80d2d80884@email.android.com>
Archived-At: http://mailarchive.ietf.org/arch/msg/uta/Coc6qqBSVPWye8I2tc4n8h3uqBs
Cc: uta@ietf.org, Olle E Johansson <oej@edvina.net>
Subject: Re: [Uta] opportunistic keying / encryption considered of dubious value
X-BeenThere: uta@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: UTA working group mailing list <uta.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/uta>, <mailto:uta-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/uta/>
List-Post: <mailto:uta@ietf.org>
List-Help: <mailto:uta-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/uta>, <mailto:uta-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 17 Mar 2014 14:35:27 -0000

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

On 17 March 2014 14:09:46 GMT+00:00, "Olle E. Johansson" <oej@edvina.net> wrote:
>That [limiting scope of governmental CAs to respective ccTLDs] is not going to fly. Many CCTLDs have rules that make it hard to
>stay within the ccTLD, even for governments.

One might suggest that's their own issue to solve.

Punch trust anchor exceptions with DANE?

- --
/akr
-----BEGIN PGP SIGNATURE-----
Version: APG v1.0.9
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=3afq
-----END PGP SIGNATURE-----