Title: Secret Key Establishment for DNS (TKEY RR)
Author(s): D. Eastlake 3rd.
Status: PROPOSED STANDARD
Date: Sep 2000
Length: 34894
[RFC2845] provides a means of authenticating Domain Name System (DNS) queries and responses using shared secret keys via the Transaction Signature (TSIG) resource record (RR). However, it provides no mechanism for setting up such keys other than manual exchange. This document describes a Transaction Key (TKEY) RR that can be used in a number of different modes to establish shared secret keys between a DNS resolver and server.
|
|
|