Archives

10:58 < Henriette_RIPENCC> Hi everyone, I'm Henriette from the RIPE NCC. If you have questions/comments for the presenter and want me to read it out, please state your name/affiliation and I'll go to the mic when questions are called for. Keep in mind that there is up to a 45 second delay for remote participants, so it's better to get your questions in before the question period begins.
10:58 < Henriette_RIPENCC> Please note that all chat transcripts will be archived and made available to the public on https://ripe79.ripe.net/
11:01 < Henriette_RIPENCC> Andrew McConachie has begun the presentation "Danish: HTTPS DANE Validation on Linux".
11:08 < starborn> _Nik_: kbojens
11:08 < starborn> Sorry.
11:11 < starborn> I really like the idea of DANE. But is DANE still relevant when DoH is on the horizon?
11:11 < simonvik> starborn: yes, it is, it moves the trust from CAs to the DNSSEC chain
11:12 < dnshane> DANE is about distributing TLS certificates in the DNS. DoH is addressing a completely different problem.
11:12 < starborn> Good point.
11:14 < dnshane> Probably a better question is whether DANE is still relevant with Lets Encrypt securing so much of the Internet?
11:16 < starborn> Well, if you have used DANE to propagate yout self signed certs, that still might be useful.
11:16 < Henriette_RIPENCC> Andrew McConachie has asked for questions.
11:17 < Henriette_RIPENCC> dnsshane, shall I ask your question to Andrew?
11:18 < starborn> Please do ;)
11:18 < dnshane> No thanks Henriette.
11:18 < dnshane> Oh, but starborn wants it. :-D
11:18 < dnshane> I'll ask.
11:18 < starborn> The main question would be: Is DANE relevant today?
11:19 < Henriette_RIPENCC> Could you tell me your name and organisation please?
11:19 < starborn> Kai Bojens, Artfiles New Media GmbH
11:19 < Henriette_RIPENCC> OK!
11:22 < starborn> Thanks.
11:22 < Henriette_RIPENCC> Your welcome!
11:24 < Henriette_RIPENCC> The presentation has ended.
11:25 < Henriette_RIPENCC> Moritz Müller has begun the presentation “Roll Roll Roll Your Root: A Comprehensive Analysis of the First Ever DNSSEC Root KSK Rollover”
11:47 < Henriette_RIPENCC> Moritz Müller has asked for questions.
11:49 < dnshane> "When developing a new protocol keep telemetry in mind early on." Probably a bit late to consider for DNS, but fair enough. 😄
12:09 < Henriette_RIPENCC1> Erik Bais has asked for questions.
12:30 < Henriette_RIPENCC1> This session has now ended.