IETF DANE the protocol that will encrypt DNS emails

The Internet Task Force (IETF), is developing in an experimental stage a new DNS called DANE. The new protocol will be able to hide email addresses in DNS records.security chain DANE

DANE, or DNS-Based Authentication of Named Entities, is a new protocol originally developed to allow TLS / SSL certificates to be associated with DNS (Domain Name System Security Extensions) DNS records.

When first introduced, DANE is supposed to help browsers verify whether a TLS / SSL certificate contained a valid CA certificate by checking a specific DNS record field.

The protocol, which is still experimental and under continuous development by the IETF, appears to add an additional feature of privacy that will allow domain providers to hide email addresses.

As the Register says, the IETF team has decided to add this capability to the DANE protocol, which means that once the e-mail addresses are released, they will appear in hashed format () encrypted) in the DNS record results.

This reduces the chance of hijacking the domain as it will not display an email address in plain text format to the attacker.

Of course, we should mention that the hashed e-mail can still be hacked and reveal the real e-mail, but the attacker would have to have the skills and knowledge to do so. So the new protocol comes to add another layer of security to our privacy.

But we have to wait for development and testing to be completed.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).