Domain Name System (DNS) Resource Record types for transferring covert information from primary to secondaries

Document Type Expired Internet-Draft (individual)
Authors Witold KrÄ™cicki  , Evan Hunt  , Dan Mahoney 
Last updated 2020-01-07 (latest revision 2019-07-06)
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


The Domain Name System (DNS) Resource Record TYPEs IANA registry reserves the range 128-255 for Q-TYPEs and Meta-TYPEs [RFC6895] - Resource Records that can only be queried for or contain transient data associated with a particular DNS message. This document reserves a range of RR TYPE numbers for Covert-TYPEs - types that are an integral part of the zone but cannot be accessed via a normal QUERY operation. Uses for such records could include zone comments that are transferrable with the zone, expiry times for dynamically updated records, or Zone Signing Keys for inline signing. This document, however, does not define any specific Covert RR types.


Witold Kręcicki (
Evan Hunt (
Dan Mahoney (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)