logoalt Hacker News

handoflixuetoday at 3:11 PM1 replyview on HN

Can you move a DNS record AND make it look like I signed off on it?

The author's concern seems to be more focused on impersonation


Replies

Zambytetoday at 5:36 PM

Do you use your own CA? Would you expect users to even notice if the certs were suddenly issued by LetsEncrypt? Or are you signing traffic using something other than TLS, where the domain name doesn't really matter anyway?