CHAIN Query Requests in DNS
RFC 7901, “CHAIN Query Requests in DNS”, is an Experimental document published in June 2016 by P. Wouters. The canonical text is published by the RFC Editor.
Abstract
This document defines an EDNS0 extension that can be used by a security-aware validating resolver configured to use a forwarding resolver to send a single query, requesting a complete validation path along with the regular query answer. The reduction in queries potentially lowers the latency and reduces the need to send multiple queries at once. This extension mandates the use of source-IP- verified transport such as TCP or UDP with EDNS-COOKIE, so it cannot be abused in amplification attacks.
What “Experimental” means
Describes a specification that is part of a research or development effort, published so the community can gain experience with it.
The canonical text of RFC 7901 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 7900 Extranet Multicast in BGP/IP MPLS VPNs
- RFC 7902 Registry and Extensions for P-Multicast Service Interface Tunnel Attribute Flags
- RFC 7899 Multicast VPN State Damping
- RFC 7903 Windows Image Media Types
- RFC 7898 Domain Subobjects for Resource Reservation Protocol - Traffic Engineering
- RFC 7904 A SIP Usage for REsource LOcation And Discovery
- RFC 7897 Domain Subobjects for the Path Computation Element Communication Protocol
- RFC 7905 ChaCha20-Poly1305 Cipher Suites for Transport Layer Security