Dendarii
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
thehatfox@lemmy.world to Sysadmin@lemmy.worldEnglish · 1 year ago

ICANN proposes creating .INTERNAL domain

www.theregister.com

external-link
message-square
32
fedilink
  • cross-posted to:
  • [email protected]
56
external-link

ICANN proposes creating .INTERNAL domain

www.theregister.com

thehatfox@lemmy.world to Sysadmin@lemmy.worldEnglish · 1 year ago
message-square
32
fedilink
  • cross-posted to:
  • [email protected]
The plan is to keep the world at bay by never recording it in the DNS root – like many already do with a subdomain for an intranet
  • Possibly linux@lemmy.zip
    link
    fedilink
    English
    arrow-up
    21
    arrow-down
    1
    ·
    edit-2
    1 year ago

    Please no

    It would be nice to figure out a way to get local SSL certs for .lan and .local domains though.

    • Justin@lemmy.jlh.name
      link
      fedilink
      English
      arrow-up
      13
      ·
      1 year ago

      I just use a subdomain of my main domain and use dns validation of let’s encrypt.

      • Possibly linux@lemmy.zip
        link
        fedilink
        English
        arrow-up
        8
        arrow-down
        1
        ·
        1 year ago

        That requires outside authentication though. I think it would be cool to incorporate some SSL into dhcp

        • nbailey@lemmy.ca
          link
          fedilink
          English
          arrow-up
          11
          ·
          1 year ago

          That will never happen. SSL is based on trust, and the trust root will never blindly delegate to whatever happens in random LANs. Subdomain is 100% the right approach for internal network.

          • duplexsystem@lemmy.blahaj.zone
            link
            fedilink
            arrow-up
            1
            ·
            edit-2
            1 year ago

            It can and has already happened. You can make your own root ca. Internal domains need internal root cas. Is it a pia to setup yes. Do I have it installed on my unrooted android phone and linux computers? Yes.

            Edit: I didn’t see the dhcp part. But you can still make your own root ca

            • superbirra@lemmy.world
              link
              fedilink
              arrow-up
              1
              ·
              1 year ago

              op was obviously referring to public root CAs

              • duplexsystem@lemmy.blahaj.zone
                link
                fedilink
                arrow-up
                1
                ·
                1 year ago

                I didn’t get that

                • superbirra@lemmy.world
                  link
                  fedilink
                  arrow-up
                  1
                  ·
                  edit-2
                  1 year ago

                  and IT’S OK, we don’t want you to burn out

                  • duplexsystem@lemmy.blahaj.zone
                    link
                    fedilink
                    arrow-up
                    1
                    ·
                    1 year ago

                    I’m already burnt out. Womp womp

        • Fontasia@feddit.nl
          link
          fedilink
          arrow-up
          4
          ·
          1 year ago

          The maintainers of DHCP can’t even be bothered standardising a query to check if an address is currently in use, doubt they could take on being a CA at the same time

    • MigratingtoLemmy@lemmy.world
      link
      fedilink
      arrow-up
      4
      ·
      1 year ago

      Time for your own CA

    • Supermariofan67@programming.dev
      link
      fedilink
      arrow-up
      2
      ·
      1 year ago

      What’s wrong with it?

      • Possibly linux@lemmy.zip
        link
        fedilink
        English
        arrow-up
        7
        arrow-down
        1
        ·
        edit-2
        1 year ago

        Internal is 8 letters while lan is three

    • duplexsystem@lemmy.blahaj.zone
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      You can do this, I already use .internal and you can male your own root ca and make your own certificates with that

Sysadmin@lemmy.world

sysadmin@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

A community dedicated to the profession of IT Systems Administration

No generic Lemmy issue posts please! Posts about Lemmy belong in one of these communities:
[email protected]
[email protected]
[email protected]
[email protected]

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 29 users / day
  • 671 users / week
  • 836 users / month
  • 2.76K users / 6 months
  • 1 local subscriber
  • 9.06K subscribers
  • 182 Posts
  • 1.45K Comments
  • Modlog
  • mods:
  • DarraignTheSane@lemmy.world
  • 00Lemming@lemmy.world
  • L3s@lemmy.world
  • BE: 0.19.9
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org