C-DNS: A DNS Packet Capture Format

Document Type Replaced Internet-Draft (dnsop WG)
Authors John Dickinson  , Jim Hague  , Sara Dickinson  , Terry Manderson  , John Bond 
Last updated 2016-12-01 (latest revision 2016-10-31)
Replaced by RFC 8618
Stream Internet Engineering Task Force (IETF)
Intended RFC status Proposed Standard
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream WG state Adopted by a WG
Document shepherd No shepherd assigned
IESG IESG state Replaced by draft-ietf-dnsop-dns-capture-format
Consensus Boilerplate Yes
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document describes a data representation for collections of DNS messages. The format is designed for efficient storage of large packet captures of DNS traffic; it attempts to minimize the size of such packet capture files but retain the full DNS message contents along with the most useful transport meta data. It is intended to assist with the development of DNS traffic monitoring applications and provide a more efficient data exchange format than alternatives such as PCAP files.


John Dickinson (jad@sinodun.com)
Jim Hague (jim@sinodun.com)
Sara Dickinson (sara@sinodun.com)
Terry Manderson (terry.manderson@icann.org)
John Bond (john.bond@icann.org)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)