Home / Industry

.ORG Talks with Dan Kaminsky on DNSSEC

The following post is based on a recent discussion .ORG had with Dan Kaminsky, a DNS expert best know for discovering a serious DNS bug (Website, CircleID Profile), about DNSSEC and how it is a critical step toward bolstering Internet security.

The problem, he said, largely stems from the fact that the Internet is more malleable than we’d like to admit…We need a universal identity system for the web, a universal place for people to put trusted information…” DNSSEC itself, which Dan referred to as a “technical issue that affect(s) the stability of the Internet,” is a link in a much longer chain of processes, ending with the signing of the root, that will lead to enhanced security within Internet domains. As Dan mentioned in his comments supporting the implementation of DNSSEC, “Now, we’re using the Internet to run our businesses. It should be the case that this bug doesn’t matter; it should be the case that everyone has securely encrypted email and SSL certificates. Those are things that “should be,” but it’s not the way things really are…”

To this end, .ORG has been taking the first steps to create a more secured Internet for the .ORG community in order for them to pursue their business goals and impact the greater good without possible threats. Dan agrees, however, that the signing of the root is the essential next step in order to make DNSSEC a full reality. “There are established business relationships up and down the registrar/registry network…we need to leverage those relationships…once the root is signed and the top level domains are signed.”

.ORG is the first gTLD to begin what Dan referred to as “the journey of a thousand miles,” the process of implementing DNSSEC, and in so doing is working to move toward increased Internet security.

A recent article in Internet News that ran on September 26, 2008 by Sean Kerner entitled “.ORG - The Most Secure Domain? With a new effort for DNSSEC underway, security is front and center at the Public Interest Registry”, continues the dialogue and notes .ORG’s iterative approach to the implementation of DNSSEC that includes the setting of key goals throughout the process based on a beta test phase called “Friends & Family”.

Have you thought about how DNSSEC relates to you? Help us understand your needs to address this security vulnerability.

By .ORG, The Original Purpose-Driven Generic Top-Level Domain

Public Interest Registry (PIR) is a nonprofit that operates the .ORG top-level domain – one of the world’s largest generic top-level domains with more than 10.6 million domain names registered worldwide. PIR has been a champion for a free and open Internet for two decades with a clear mission to be an exemplary domain name registry, provide a trusted digital identity and help educate those who dedicate themselves to improving our world.

Visit Page

Filed Under

Comments

Commenting is not available in this channel entry.
CircleID Newsletter The Weekly Wrap

More and more professionals are choosing to publish critical posts on CircleID from all corners of the Internet industry. If you find it hard to keep up daily, consider subscribing to our weekly digest. We will provide you a convenient summary report once a week sent directly to your inbox. It's a quick and easy read.

I make a point of reading CircleID. There is no getting around the utility of knowing what thoughtful people are thinking and saying about our industry.

VINTON CERF
Co-designer of the TCP/IP Protocols & the Architecture of the Internet

Related

Topics

DNS

Sponsored byDNIB.com

Brand Protection

Sponsored byCSC

New TLDs

Sponsored byRadix

Domain Names

Sponsored byVerisign

Cybersecurity

Sponsored byVerisign

Threat Intelligence

Sponsored byWhoisXML API

IPv4 Markets

Sponsored byIPv4.Global