RFC 3833 · INFORMATIONAL · 2004

Threat Analysis of the Domain Name System

Overview

RFC 3833, “Threat Analysis of the Domain Name System”, is an Informational document published in August 2004 by D. Atkins, R. Austein. The canonical text is published by the RFC Editor.

Abstract

Although the DNS Security Extensions (DNSSEC) have been under development for most of the last decade, the IETF has never written down the specific set of threats against which DNSSEC is designed to protect. Among other drawbacks, this cart-before-the-horse situation has made it difficult to determine whether DNSSEC meets its design goals, since its design goals are not well specified. This note attempts to document some of the known threats to the DNS, and, in doing so, attempts to measure to what extent (if any) DNSSEC is a useful tool in defending against these threats. This memo provides information for the Internet community.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 3833 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2004

Who Is Online

In total there are 118 users online: 0 registered, 110 guests and 8 bots.

Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.

Bots: AhrefsBot Applebot Baiduspider Bingbot Other Bot Other Crawler PetalBot SemrushBot

Users active in the past 15 minutes. Total registered members: 372