Comodo indirectly promote the end of CAs

Tuesday, April 5, 2011

Since the high profile Comodo Cerficate Authority security incident, DANE (i.e. DNS-based Authentication of Named Entities) is getting a lot of attention. More precisely, this draft.

This is one step in the right direction. Once we can provide certificate directly from the DNSSEC structure no one will have a reason not to use encryption: free certificate for everyone in a really easy and secure fashion. Hasta la vista commercial Certificate Authorities!

Here’s a proof of concept.

Danny Fullerton
Security Researcher & Founder

