IETF RFC 8198 PDF

IETF RFC 8198 PDF

Name:
IETF RFC 8198 PDF

Published Date:
07/01/2017

Status:
[ Withdrawn ]

Description:

Aggressive Use of DNSSEC-Validated Cache

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
Need Help?
W/D S/S BY IETF RFC 9077

The DNS relies upon caching to scale; however, the cache lookup generally requires an exact match. This document specifies the use of NSEC/NSEC3 resource records to allow DNSSEC-validating resolvers to generate negative answers within a range and positive answers from wildcards. This increases performance, decreases latency, decreases resource utilization on both authoritative and recursive servers, and increases privacy. Also, it may help increase resilience to certain DoS attacks in some circumstances.

This document updates RFC 4035 by allowing validating resolvers to generate negative answers based upon NSEC/NSEC3 records and positive answers in the presence of wildcards.


Edition : 17
Number of Pages : 13
Published : 07/01/2017

History


Related products

IETF RFC 5032
Published Date: 09/01/2007
WITHIN Search Extension to the IMAP Protocol
$9.3

Best-Selling Products