Secure Domain Name System (DNS) Deployment 2026 Guide [pdf]

XzetaU8 91 points 8 comments March 24, 2026
nvlpubs.nist.gov · View on Hacker News

Discussion Highlights (3 comments)

bob1029

> ECC algorithms with smaller key sizes would be more vulnerable to a quantum attack, as it would require a currently theoretical quantum computer with fewer qubits than would be required for an RSA key with the same cryptographic strength [25]. This is what keeps me skeptical about ECC. RSA is really chunky, and maybe that's a fundamental advantage from an information theory perspective. Compromising on the crypto scheme because we can't fit inside UDP seems like a cursed path. [25]: https://arxiv.org/abs/1706.06752

progbits

> 864000 seconds (1 day) Could use some proofreading.

antonyh

I do wish these types of document were published as HTML and not just as PDF.

Semantic search powered by Rivestack pgvector
3,471 stories · 32,344 chunks indexed