DNS authentication is really necessary. I, and probably many others, would like to use TLS with network printers, ethernet switches and many other devices where it is impossible to place challenge document in arbitrary place under HTTP server. To take down such devices once per two months just to get certificates is not acceptable. I see some previous discussion on the subject and I somewhat understand security concerns. However, as serving HTTP is dependent on DNS and its integrity, I don’t really see the point.
If anyone has a solution to the basic problem eg. embedded devices etc, please enlighten me!