This Internet-Draft is no longer active. Unofficial copies of old Internet-Drafts can be found here:
http://tools.ietf.org/id/draft-ietf-dnsext-dnssec-okbit.
Abstract:
In order to deploy DNSSEC (Domain Name System Security Extensions) operationally,
DNSSEC aware servers should only perform automatic inclusion of DNSSEC RRs when there is an explicit
indication that the resolver can understand those RRs. This document proposes the use of a bit
in the EDNS0 header to provide that explicit indication and describes the necessary
protocol changes to implement that notification. [STANDARDS-TRACK]
Authors:
David Conrad <david.conrad@nominum.com>
(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid)