<oembed><type>rich</type><version>1.0</version><author_name>npub1fvd9jpjgn33ry4tt663e3fpsw5zysxzuacumergtweqhsa6ac9gqred8pr</author_name><author_url>https://nostr.ae/npub1fvd9jpjgn33ry4tt663e3fpsw5zysxzuacumergtweqhsa6ac9gqred8pr</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2012-11-26&#xA;📝 Original message:Supporting DNSSEC/DANE in the future when they are widely deployed is a great idea.&#xA;&#xA;Note that the x509chain field is &#39;repeated&#39;, and any repeated field may have zero entries. So I would suggest supporting other PKI systems in the future by adding optional new fields (for maximum compatibility or security merchants might want to include both a x509chain AND &#xA;&#xA;--&#xA;Gavin Andresen</html></oembed>