[DNSOP] I-D Action: draft-ietf-dnsop-compact-denial-of-existence-00.txt

internet-drafts@ietf.org Thu, 11 May 2023 09:34 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: dnsop@ietf.org
Delivered-To: dnsop@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 70BC2C151549; Thu, 11 May 2023 02:34:04 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Cc: dnsop@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 10.2.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: dnsop@ietf.org
Message-ID: <168379764444.56911.13107674932618286318@ietfa.amsl.com>
Date: Thu, 11 May 2023 02:34:04 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/JYogi8D_FyCnxXBe_BJoXzEmEu0>
Subject: [DNSOP] I-D Action: draft-ietf-dnsop-compact-denial-of-existence-00.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.39
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 11 May 2023 09:34:04 -0000

A New Internet-Draft is available from the on-line Internet-Drafts
directories. This Internet-Draft is a work item of the Domain Name System
Operations (DNSOP) WG of the IETF.

   Title           : Compact Denial of Existence in DNSSEC
   Authors         : Shumon Huque
                     Christian Elmerot
                     Olafur Gudmundsson
   Filename        : draft-ietf-dnsop-compact-denial-of-existence-00.txt
   Pages           : 8
   Date            : 2023-05-09

   This document describes a technique to generate a signed DNS response
   on demand for a non-existent name by claiming that the name exists
   but doesn't have any data for the queried record type.  Such answers
   require only one minimal NSEC record, allow online signing servers to
   minimize signing operations and response sizes, and prevent zone
   content disclosure.

The IETF datatracker status page for this Internet-Draft is:

There is also an HTML version available at:

Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts