Re: Security Model, Secondary Certs, and ORIGIN

> One of the things I've been wrestling with following the most recent IETF 
> discussion is a resurgence of the question about whether DNS is, in fact, 
> a contributor to security.
> In the ORIGIN spec, our conclusion was that it wasn't. 

> As a result, I'm coming to believe that ORIGIN got it wrong, and we need 
> to update that document to close the hole.


I agree.

/ Kari Hurtta

