Comment: Re:Unfortunately, what else is new? (Score 2, Interesting) 2008-07-15 13:03
Attached to: Paul Vixie Responds To DNS Hole Skeptics
Not exactly.
This flaw was well known in 1990. Paul Vixie has been dragging his feet for almost twenty years with crack-potted shit like "additional credibility rules" and extra complexity.
How to fix this bug trivially was well known over ten years ago and still the ISC has been refusing to secure its users because they want to push DNS-SEC- a security system based on a trust hierarchy that doesn't exist, whose implementation has never worked, and will never work because Paul is a fucking idiot who cares more about his own ego than just admitting he was wrong and learning to live with it.
Look even now:
Second, take Secure DNS seriously, even though there are intractable problems in its business and governance model
He can't help himself. He's a douchebag, and I hope he just leaves the Internet business forever. We'd all be much better for it.

