In India, several websites get blocked by different ISPs based on some highly unsubstantiated petitions to some court that doesn’t understand what the right move is and just sends the list of domains to be blocked to some ISPs, who gladly comply without any checks or questions. Users see a message saying that the site has been blocked because of some order from the Department of Telecommunications. There is no grieva…
One of the options I've thought of (and I'm sure many others have as well) is to have all zones distributed in a P2P manner via ICANN. To not put too much burden on ICANN and keep things decentralized, have ICANN at the root of the DNS PKI and have all zones signed by the responsible party. This would solve a few of the big problems we have: * All sorts of MITM and evil resolver attacks would be prevented. * Since DN…
As you say though, I suspect the inertia behind the status quo is so strong that there is little chance of such a radical change being accepted.