Skip to main content

Change the status of GOST Signature Algorithms in DNSSEC in the IETF stream to Historic
status-change-gost-dnssec-to-historic-02

The information below is for an old version of the document.
Document Proposed status change Change the status of GOST Signature Algorithms in DNSSEC in the IETF stream to Historic Snapshot
Last updated 2023-11-16
Moves to Historic RFC5933
State AD Review
IESG Telechat date (None)
Responsible AD Warren Kumari
Send notices to warren@kumari.net

status-change-gost-dnssec-to-historic-02
[RFC5933 - "Use of GOST Signature Algorithms in DNSKEY and RRSIG Resource
Records for DNSSEC"](https://datatracker.ietf.org/doc/rfc5933/) was published
in the IETF Stream and refers only to GOST R 34.10-2001 and GOST R 34.11-94.
GOST 34.10-2001 and GOST 34.11-94 were deprecated by the Orders of the Federal
Agency for Technical Regulation and Metrology of Russia (Rosstandart) in August
2012, and superseded by GOST 34.10-2012 and GOST 34.11-2012 respectively from
January 1, 2013.

The update to RFC5933, draft-makarenko-gost2012-dnssec, describing "how to
produce digital signatures and hash functions using the GOST R 34.10-2012 and
GOST R 34.11-2012 algorithms for DNSKEY, RRSIG, and DS resource records, for
use in the Domain Name System Security Extensions (DNSSEC)" will be published
on the ISE stream.

This status change document marks RFC5933 as historic, and will take affect
once draft-makarenko-gost2012-dnssec is published as an RFC.