@techreport{eastlake-dnsop-rfc2930bis-tkey-05, number = {draft-eastlake-dnsop-rfc2930bis-tkey-05}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-eastlake-dnsop-rfc2930bis-tkey/05/}, author = {Donald E. Eastlake 3rd and Mark P. Andrews}, title = {{Secret Key Agreement for DNS: The TKEY Resource Record}}, pagetotal = 26, year = 2026, month = mar, day = 2, abstract = {RFC 8945 provides efficient authentication of Domain Name System (DNS) protocol messages using shared secret keys and the Transaction Signature (TSIG) resource record (RR). However, it provides no mechanism for setting up such keys other than by configuration. This document specifies the Transaction Key (TKEY) RR that can be used to establish shared secret keys between a DNS resolver and server. This document obsoletes RFC 2930.}, }