Resource Records for the DNS Security Extensions
RFC 4034, “Resource Records for the DNS Security Extensions”, is a Proposed Standard document published in March 2005 by R. Arends, R. Austein, M. Larson, D. Massey, S. Rose. It updates RFC 1034, RFC 1035, RFC 2136, RFC 2181, RFC 2308, RFC 3225, RFC 3226, RFC 3597. It obsoletes RFC 2535, RFC 3008, RFC 3090, RFC 3445, RFC 3655, RFC 3658, RFC 3755, RFC 3757, RFC 3845. It has since been updated by RFC 4470, RFC 6014, RFC 6840, RFC 6944, RFC 9077, RFC 9824, RFC 9905. The canonical text is published by the RFC Editor.
Abstract
This document is part of a family of documents that describe the DNS Security Extensions (DNSSEC). The DNS Security Extensions are a collection of resource records and protocol modifications that provide source authentication for the DNS. This document defines the public key (DNSKEY), delegation signer (DS), resource record digital signature (RRSIG), and authenticated denial of existence (NSEC) resource records. The purpose and format of each resource record is described in detail, and an example of each resource record is given.
This document obsoletes RFC 2535 and incorporates changes from all updates to RFC 2535. [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 4034 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 4033 DNS Security Introduction and Requirements
- RFC 4035 Protocol Modifications for the DNS Security Extensions
- RFC 4032 Update to the Session Initiation Protocol Preconditions Framework
- RFC 4036 Management Information Base for Data Over Cable Service Interface Specification Cable Modem Termination Systems for Subscriber Management
- RFC 4031 Service Requirements for Layer 3 Provider Provisioned Virtual Private Networks
- RFC 4037 Open Pluggable Edge Services Callout Protocol Core
- RFC 4030 The Authentication Suboption for the Dynamic Host Configuration Protocol Relay Agent Option
- RFC 4038 Application Aspects of IPv6 Transition