Title: Redefinition of DNS Authenticated Data (AD) bit
Author(s): B. Wellington, O. Gudmundsson.
Status: PROPOSED STANDARD
Date: Nov 2003
Length: 15646
Updates: RFC2535
This document alters the specification defined in RFC2535. Based on implementation experience, the Authenticated Data (AD) bit in the DNS header is not useful. This document redefines the AD bit such that it is only set if all answers or records proving that no answers exist in the response has been cryptographically verified or otherwise meets the server's local security policy.
|
|
|