[DNSOP] I-D Action: draft-wessels-dns-zone-digest-05.txt

internet-drafts@ietf.org Wed, 07 November 2018 07:56 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: dnsop@ietf.org
Delivered-To: dnsop@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id D7E44130E67; Tue, 6 Nov 2018 23:56:21 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Cc: dnsop@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.87.3
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: dnsop@ietf.org
Message-ID: <154157738181.30936.9747623740033978415@ietfa.amsl.com>
Date: Tue, 06 Nov 2018 23:56:21 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/tOE_H0zwtTXIFt5LOBVajuMVEt0>
Subject: [DNSOP] I-D Action: draft-wessels-dns-zone-digest-05.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 Nov 2018 07:56:22 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Domain Name System Operations WG of the IETF.

        Title           : Message Digest for DNS Zones
        Authors         : Duane Wessels
                          Piet Barber
                          Matt Weinberg
                          Warren Kumari
                          Wes Hardaker
	Filename        : draft-wessels-dns-zone-digest-05.txt
	Pages           : 27
	Date            : 2018-11-06

   This document describes an experimental protocol and new DNS Resource
   Record that can be used to provide a message digest over DNS zone
   data.  The ZONEMD Resource Record conveys the message digest data in
   the zone itself.  When a zone publisher includes an ZONEMD record,
   recipients can verify the zone contents for accuracy and
   completeness.  This provides assurance that received zone data
   matches published data, regardless of how the zone data has been
   transmitted and received.

   ZONEMD is not designed to replace DNSSEC.  Whereas DNSSEC protects
   individual RRSets (DNS data with fine granularity), ZONEMD protects
   protects a zone's data as a whole, whether consumed by authoritative
   name servers, recursive name servers, or any other applications.

   As specified at this time, ZONEMD is not designed for use in large,
   dynamic zones due to the time and resources required for digest
   calculation.  The ZONEMD record described in this document includes
   fields reserved for future work to support large, dynamic zones.

The IETF datatracker status page for this draft is:

There are also htmlized versions available at:

A diff from the previous version is available at:

Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at: