logoalt Hacker News

ambigious7777yesterday at 9:44 PM0 repliesview on HN

You're talking about DAME (which email uses). It has it's own issues like not having transparency logs, and if a DNSSEC signing keyholder goes rogue, there is no easy way to revoke trust (unlike CRLs for Web PKI).