[Members] XMPP and DNSSEC

Simon Tennant simon at buddycloud.com
Fri Jan 17 18:27:05 UTC 2014


On 17 January 2014 13:39, Dave Cridland <dave at cridland.net> wrote:

>
>>    - multi-tenant XMPP hosting + security isn't possible
>>
>> That's incorrect; it's generally made more difficult by services having
> to have valid certificates for the domain hosted, which is quite difficult
> for large third-party hosting providers. It is absolutely NOT impossible,
> though, and large scale HTTP providers do just this.
>

How do you propose the hosting provider vouch for you without handing over
your private key?

>
>>    - How do we help operators deploy with DNSSEC?
>>
>> Well, assuming by "we", you mean the XSF, I think we should first poll
> the members to see if they want the XSF to be involved here.
>

I hardly think that volunteering to help write up specs and guides for
implementation (voluntarily) is onerous enough to requires members
referendums. If it really is, we should also ballot on whether the XSF will
return the ISCO's very generous grant to work on DNSSEC.

S.
-- 
Simon Tennant | buddycloud.com | +49 17 8545 0880 | office hours:
goo.gl/tQgxP
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.jabber.org/pipermail/members/attachments/20140117/4c1aa45f/attachment.html>


More information about the Members mailing list