Skip to main content

Verifying Resource Records Without Knowing Their Contents

Document Type Expired Internet-Draft (dnsind WG)
Expired & archived
Author Mark P. Andrews
Last updated 1999-02-17
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Additional resources Mailing list discussion
Stream WG state WG Document
Document shepherd (None)
IESG IESG state Expired
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:


DNSSEC [RFC2065] provides a mechanism to cryptographically verify a DNS resource record provided we can get it into canonical form. The problem is how do we do this without knowing the contents of all resource record types? This document provides one possible solution to this problem.


Mark P. Andrews

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)