DNS Security Introduction and Requirements
RFC 4033, “DNS Security Introduction and Requirements”, is a Proposed Standard document published in March 2005 by R. Arends, R. Austein, M. Larson, D. Massey, S. Rose. It updates RFC 1034, RFC 1035, RFC 2136, RFC 2181, RFC 2308, RFC 3225, RFC 3226, RFC 3597. It obsoletes RFC 2535, RFC 3008, RFC 3090, RFC 3445, RFC 3655, RFC 3658, RFC 3755, RFC 3757, RFC 3845. It has since been updated by RFC 6014, RFC 6840. The canonical text is published by the RFC Editor.
Abstract
The Domain Name System Security Extensions (DNSSEC) add data origin authentication and data integrity to the Domain Name System. This document introduces these extensions and describes their capabilities and limitations. This document also discusses the services that the DNS security extensions do and do not provide. Last, this document describes the interrelationships between the documents that collectively describe DNSSEC. [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 4033 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 4032 Update to the Session Initiation Protocol Preconditions Framework
- RFC 4034 Resource Records for the DNS Security Extensions
- RFC 4031 Service Requirements for Layer 3 Provider Provisioned Virtual Private Networks
- RFC 4035 Protocol Modifications for the DNS Security Extensions
- RFC 4030 The Authentication Suboption for the Dynamic Host Configuration Protocol Relay Agent Option
- RFC 4036 Management Information Base for Data Over Cable Service Interface Specification Cable Modem Termination Systems for Subscriber Management
- RFC 4029 Scenarios and Analysis for Introducing IPv6 into ISP Networks
- RFC 4037 Open Pluggable Edge Services Callout Protocol Core