[DNSOP] I-D Action: draft-ietf-dnsop-compact-denial-of-existence-02.txt

internet-drafts@ietf.org Wed, 28 February 2024 16:29 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: dnsop@ietf.org
Delivered-To: dnsop@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 87994C14F5FF; Wed, 28 Feb 2024 08:29:17 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Cc: dnsop@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 12.6.1
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: dnsop@ietf.org
Message-ID: <170913775753.41245.8024869965476037767@ietfa.amsl.com>
Date: Wed, 28 Feb 2024 08:29:17 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/XB2CIw7WP1QE-KIx8lxa5KAdEME>
Subject: [DNSOP] I-D Action: draft-ietf-dnsop-compact-denial-of-existence-02.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.39
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 28 Feb 2024 16:29:17 -0000

Internet-Draft draft-ietf-dnsop-compact-denial-of-existence-02.txt is now
available. It is a work item of the Domain Name System Operations (DNSOP) WG
of the IETF.

   Title:   Compact Denial of Existence in DNSSEC
   Authors: Shumon Huque
            Christian Elmerot
            Olafur Gudmundsson
   Name:    draft-ietf-dnsop-compact-denial-of-existence-02.txt
   Pages:   12
   Dates:   2024-02-28

Abstract:

   This document describes a technique to generate a signed DNS response
   on demand for a non-existent name by claiming that the name exists
   but doesn't have any data for the queried record type.  Such answers
   require only one minimal NSEC record, allow online signing servers to
   minimize signing operations and response sizes, and prevent zone
   content disclosure.

Discussion Venues

   This note is to be removed before publishing as an RFC.

   Source for this draft and an issue tracker can be found at
   https://github.com/shuque/id-dnssec-compact-lies.

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-dnsop-compact-denial-of-existence/

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-dnsop-compact-denial-of-existence-02.html

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-dnsop-compact-denial-of-existence-02

Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts