Re: md5 checksum server

From: Mike Hoskins (mike@adept.org)
Date: 10/10/02


Date: Wed, 9 Oct 2002 16:45:06 -0700 (PDT)
From: Mike Hoskins <mike@adept.org>
To: Lyndon Nerenberg <lyndon@orthanc.ab.ca>

On Wed, 9 Oct 2002, Lyndon Nerenberg wrote:
> DNS isn't the right place for this.

You could make the same arguments about portsdb.org...

> 1) it requires DNSSEC to ensure the MD5 record data isn't forged

Easy enough.

> 2) DNS caching would hide updates for the duration of the TTL
> attached to the TXT record

Tuneable.

I didn't say this was ideal, but it's easy to setup does work in the wild
now for some datasets. Regardless, I'm not attached to any one
proposal... Feel free to make others. :)

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • Re: DNS, MX , CNAME,.....HELP!
    ... Does this mean that anything with @ in it regardless of domain or ... subdomain would go to the 199. ... The @ symbol would mean the same as (same as parent folder) in the Microsoft ... DNS Management Console, it is for the name of the zone the record is in. ...
    (microsoft.public.windows.server.dns)
  • Re: DNS, MX , CNAME,.....HELP!
    ... Does this mean that anything with @ in it regardless of domain or ... subdomain would go to the 199. ... The @ symbol would mean the same as (same as parent folder) in the Microsoft ... DNS Management Console, it is for the name of the zone the record is in. ...
    (microsoft.public.windows.server.dns)
  • Re: 2003 Host Records Vanish?
    ... > Can anyone advise on why 2003 server host and MX records are being ... > AD, with an integrated DNS. ... required that the DHCP client service be running and "Register this ... service is responsible for DNS registration, regardless if the NIC gets its ...
    (microsoft.public.windows.server.dns)
  • Re: Poulson 6 times more powerful than Tukwilla?
    ... not someone knew how to set up DNS on VMS, regardless of whether they ... Intel was saying that nobody needed 64 bits. ...
    (comp.os.vms)
  • Re: [Full-disclosure] Server Redundancy
    ... DNS and using rsync to replicate changes. ... Dynamic DNS will not provide the response you are looking for. ... ISPs cache DNS for a day or two regardless of your TTL. ...
    (Full-Disclosure)