Use of SHA-2 Algorithms with RSA in DNSKEY and RRSIG Resource Records for DNSSEC
RFC 5702, “Use of SHA-2 Algorithms with RSA in DNSKEY and RRSIG Resource Records for DNSSEC”, is a Proposed Standard document published in October 2009 by J. Jansen. It has since been updated by RFC 6944. The canonical text is published by the RFC Editor.
Abstract
This document describes how to produce RSA/SHA-256 and RSA/SHA-512 DNSKEY and RRSIG resource records for use in the Domain Name System Security Extensions (RFC 4033, RFC 4034, and RFC 4035). [STANDARDS TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 5702 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 5701 IPv6 Address Specific BGP Extended Community Attribute
- RFC 5703 Sieve Email Filtering: MIME Part Tests, Iteration, Extraction, Replacement, and Enclosure
- RFC 5704 Uncoordinated Protocol Development Considered Harmful
- RFC 5698 Data Structure for the Security Suitability of Cryptographic Algorithms
- RFC 5706 Guidelines for Considering Operations and Management of New Protocols and Protocol Extensions
- RFC 5697 Other Certificates Extension
- RFC 5696 Baseline Encoding and Transport of Pre-Congestion Information
- RFC 5695 MPLS Forwarding Benchmarking Methodology for IP Flows