datatracker.ietf.org
Sign In
Version 4.50, 2013-05-15
Report a bug

Indicating Resolver Support of DNSSEC
draft-ietf-dnsext-dnssec-okbit-03

RFC
Document Stream: IETF
Last updated: 2001-10-22
Intended RFC status: Proposed Standard
Other versions: (expired, archived): plain text, pdf, html

Document shepherd:(None)
Shepherd writeup
Consensus:Unknown

IESG State: RFC 3225
Responsible AD: (None)
Send notices to: No addresses provided

This Internet-Draft is no longer active. Unofficial copies of old Internet-Drafts can be found here:
http://tools.ietf.org/id/draft-ietf-dnsext-dnssec-okbit.

Abstract:
In order to deploy DNSSEC (Domain Name System Security Extensions) operationally, DNSSEC aware servers should only perform automatic inclusion of DNSSEC RRs when there is an explicit indication that the resolver can understand those RRs. This document proposes the use of a bit in the EDNS0 header to provide that explicit indication and describes the necessary protocol changes to implement that notification. [STANDARDS-TRACK]

Authors:
David Conrad <david.conrad@nominum.com>

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid)