@encthenet@flyovercountry.social
Post #2209498
2026-05-06 06:49 UTC
The idea that dnssec adds another failure mode neglects to mention that it also prevents other failure modes, like DNS cache poisoning or DNS spoofing/server take over.
Or bgp hijacking and doing selective/targeted redirection.
Replies (1)
-
@neirbowj@mastodon.online 2026-05-06 22:51
@encthenet@flyovercountry.social Yes, and it thereby makes possible useful functions that would not otherwise be possible.