Hacker News new | past | comments | ask | show | jobs | submit login

I don't buy it. They provide support for the "SPF" record type, but not "RRSIG". They would be equally simple to implement, yet DNSSEC would be hugely more beneficial.

I've never come across anyone using the SPF record type. nearly everyone just uses TXT for that.

I think DNSSEC was just an oversight on Amazons behalf. A mistake that they will hopefully fix in the not too distant future.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: