Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
What is wrong with the architecture of the Internet? (ouroboros.rocks)
1 point by PaulHoule on March 1, 2025 | hide | past | favorite | 4 comments


I think the problem is the layer model. ARP and TLS and all those routing protocols don't really need to exist. Insecure connections don't need to be there. It all seems to be full of legacy stuff.

Which is probably a good thing because standardization and compatibility are really nice, but I think we could do way better today.

I don't know why it can't just be something like:

* Get the address from DNS. The address has the key hash in it.

* Use the routing prefix on the address, or LAN discovery, to find the server

* Do a handshake and make sure the public key hash matches the address

No certificates, no NAT, everything just works, LAN connections are secure, devices are identifiable between networks, if they don't want to be they can use new keys.

Routing prefixes could have a fixed layout so it's easy to identify individual subscribers for rate limit purposes.

Alternate P2P routing mechanisms could be automatic and transparent.


If IPv6 had happened quickly, we might never have needed NAT but it didn't.

My take on any 'this protocol doesn't fit the 7 layer model' analysis is that the 7 layer model is wrong.


I skimmed the text. No mention of NAT. We're in 2025. Everything is still NAT. Lack of a flat, IPv6 Internet is the problem. Everything is flextape on top of band-aids on top of glue to support content via IPv4 and NAT.


Third submission of this in 7 days.

The internet is older than most people who might read this. It has been incredibly successful. It is also unimaginably big.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: