Handling of DNS Zone Signing Keys

Document Type Expired Internet-Draft (dnsop WG)
Last updated 2001-03-02
Stream IETF
Intended RFC status (None)
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream WG state WG Document
Document shepherd No shepherd assigned
IESG IESG state Expired
Consensus Boilerplate Unknown
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


DNS Security Extensions require a greater interaction between zone administrations sharing a zone cut. The center of the interaction is the handling of the zone keys of the child and the signature applied by the parent. DNSSEC does not include a protocol for this, but the means of this interaction need definition to maintain the security of DNS.


Edward Lewis (Ed.Lewis@neustar.biz)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)