%% You should probably cite rfc7646 instead of this I-D. @techreport{ietf-dnsop-negative-trust-anchors-13, number = {draft-ietf-dnsop-negative-trust-anchors-13}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-dnsop-negative-trust-anchors/13/}, author = {P Ebersman and Warren "Ace" Kumari and Chris Griffiths and Jason Livingood and Ralf Weber}, title = {{Definition and Use of DNSSEC Negative Trust Anchors}}, pagetotal = 16, year = 2015, month = aug, day = 24, abstract = {DNS Security Extensions (DNSSEC) is now entering widespread deployment. However, domain signing tools and processes are not yet as mature and reliable as those for non-DNSSEC-related domain administration tools and processes. This document defines Negative Trust Anchors (NTAs), which can be used to mitigate DNSSEC validation failures by disabling DNSSEC validation at specified domains.}, }