IETF RFC 9103 PDF

IETF RFC 9103 PDF

Name:
IETF RFC 9103 PDF

Published Date:
08/01/2021

Status:
[ Active ]

Description:

DNS Zone Transfer over TLS

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$12.9
Need Help?

Abstract

DNS zone transfers are transmitted in cleartext, which gives attackers the opportunity to collect the content of a zone by eavesdropping on network connections. The DNS Transaction Signature (TSIG) mechanism is specified to restrict direct zone transfer to authorized clients only, but it does not add confidentiality. This document specifies the use of TLS, rather than cleartext, to prevent zone content collection via passive monitoring of zone transfers: XFR over TLS (XoT). Additionally, this specification updates RFC 1995 and RFC 5936 with respect to efficient use of TCP connections and RFC 7766 with respect to the recommended number of connections between a client and server for each transport.


Edition : 21
File Size : 1 file , 390 KB
Number of Pages : 32
Published : 08/01/2021

History


Related products

IETF RFC 7731
Published Date: 02/01/2016
Multicast Protocol for Low-Power and Lossy Networks (MPL)
$12
IETF RFC 7542
Published Date: 05/01/2015
The Network Access Identifier
$12
IETF RFC 9220
Published Date: 06/01/2022
Bootstrapping WebSockets with HTTP/3
$9
IETF RFC 9624
Published Date: 08/01/2024
EVPN Broadcast, Unknown Unicast, or Multicast (BUM) Using Bit Index Explicit Replication (BIER)
$10.2

Best-Selling Products

ACC RC14001:2008
Published Date: 02/29/2008
Responsible Care 14001 Technical Specification
ACC RC14001:2015
Published Date: 09/25/2015
Responsible Care 14001 Technical Specification
ACC RC14001:2023
Published Date: 02/15/2023
Responsible Care 14001 Technical Specification