[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Machine Identity



Dave Crocker wrote:
I feel obligated to ask an obvious question:

   Why isn't a Domain Name sufficient to the purpose you have in mind?


the usual reason is that there's a disconnect between the domain name and the host or the app. the host owner doesn't control the DNS zone for his host. instead, it's under the control of a network admin somewhere. this leads to any number of failures, e.g. there is no stable name that is bound to the host, or the name-to-address bindings can't be maintained in an up-to-date fashion.

Keith