[dane] RFC 7673 on Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with SRV Records
rfc-editor@rfc-editor.org Wed, 14 October 2015 23:51 UTC
Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: dane@ietfa.amsl.com
Delivered-To: dane@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E833B1A8AF4; Wed, 14 Oct 2015 16:51:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.912
X-Spam-Level:
X-Spam-Status: No, score=-106.912 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_WHITELIST=-100] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LZLSgUW4dY4m; Wed, 14 Oct 2015 16:51:40 -0700 (PDT)
Received: from rfc-editor.org (rfc-editor.org [4.31.198.49]) by ietfa.amsl.com (Postfix) with ESMTP id 53FC21B2CB1; Wed, 14 Oct 2015 16:51:34 -0700 (PDT)
Received: by rfc-editor.org (Postfix, from userid 30) id 01484187E28; Wed, 14 Oct 2015 16:51:21 -0700 (PDT)
To: ietf-announce@ietf.org, rfc-dist@rfc-editor.org
X-PHP-Originating-Script: 1005:ams_util_lib.php
From: rfc-editor@rfc-editor.org
Message-Id: <20151014235121.01484187E28@rfc-editor.org>
Date: Wed, 14 Oct 2015 16:51:21 -0700
Archived-At: <http://mailarchive.ietf.org/arch/msg/dane/hgAC-Fs0weKpQs6PJO-8XbckCR8>
Cc: dane@ietf.org, rfc-editor@rfc-editor.org
Subject: [dane] RFC 7673 on Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with SRV Records
X-BeenThere: dane@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: DNS-based Authentication of Named Entities <dane.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dane>, <mailto:dane-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dane/>
List-Post: <mailto:dane@ietf.org>
List-Help: <mailto:dane-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dane>, <mailto:dane-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Oct 2015 23:51:47 -0000
A new Request for Comments is now available in online RFC libraries. RFC 7673 Title: Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with SRV Records Author: T. Finch, M. Miller, P. Saint-Andre Status: Standards Track Stream: IETF Date: October 2015 Mailbox: dot@dotat.at, mamille2@cisco.com, peter@andyet.com Pages: 16 Characters: 34193 Updates/Obsoletes/SeeAlso: None I-D Tag: draft-ietf-dane-srv-14.txt URL: https://www.rfc-editor.org/info/rfc7673 DOI: http://dx.doi.org/10.17487/RFC7673 The DNS-Based Authentication of Named Entities (DANE) specification (RFC 6698) describes how to use TLSA resource records secured by DNSSEC (RFC 4033) to associate a server's connection endpoint with its Transport Layer Security (TLS) certificate (thus enabling administrators of domain names to specify the keys used in that domain's TLS servers). However, application protocols that use SRV records (RFC 2782) to indirectly name the target server connection endpoints for a service domain name cannot apply the rules from RFC 6698. Therefore, this document provides guidelines that enable such protocols to locate and use TLSA records. This document is a product of the DNS-based Authentication of Named Entities Working Group of the IETF. This is now a Proposed Standard. STANDARDS TRACK: This document specifies an Internet Standards Track protocol for the Internet community, and requests discussion and suggestions for improvements. Please refer to the current edition of the Official Internet Protocol Standards (https://www.rfc-editor.org/standards) for the standardization state and status of this protocol. Distribution of this memo is unlimited. This announcement is sent to the IETF-Announce and rfc-dist lists. To subscribe or unsubscribe, see https://www.ietf.org/mailman/listinfo/ietf-announce https://mailman.rfc-editor.org/mailman/listinfo/rfc-dist For searching the RFC series, see https://www.rfc-editor.org/search For downloading RFCs, see https://www.rfc-editor.org/rfc.html Requests for special distribution should be addressed to either the author of the RFC in question, or to rfc-editor@rfc-editor.org. Unless specifically noted otherwise on the RFC itself, all RFCs are for unlimited distribution. The RFC Editor Team Association Management Solutions, LLC