> It's a shame, really, because DANE would've fixed so many problems.
It would basically make services like Let's Encrypt unnecessary and would move us close to a world where email encryption and validation works by default.
It would take us to a world where the only CA you can and have to trust is the TLD operators and their nation. Where transparency is mostly an afterthought and violators can't be forced to do anything.
It would basically make services like Let's Encrypt unnecessary and would move us close to a world where email encryption and validation works by default.