RFC 8598 · PROPOSED STANDARD · 2019

Split DNS Configuration for the Internet Key Exchange Protocol Version 2

Overview

RFC 8598, “Split DNS Configuration for the Internet Key Exchange Protocol Version 2”, is a Proposed Standard document published in May 2019 by T. Pauly, P. Wouters. The canonical text is published by the RFC Editor.

Abstract

This document defines two Configuration Payload Attribute Types (INTERNAL_DNS_DOMAIN and INTERNAL_DNSSEC_TA) for the Internet Key Exchange Protocol version 2 (IKEv2). These payloads add support for private (internal-only) DNS domains. These domains are intended to be resolved using non-public DNS servers that are only reachable through the IPsec connection. DNS resolution for other domains remains unchanged. These Configuration Payloads only apply to split- tunnel configurations.

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 8598 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2019

Who Is Online

In total there are 28 users online: 0 registered, 22 guests and 6 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Bingbot Facebook Other Bot SemrushBot

Users active in the past 15 minutes. Total registered members: 354