I-D Action: draft-dupont-dnsop-rfc2845bis-00.txt

internet-drafts@ietf.org Mon, 30 October 2017 22:06 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: i-d-announce@ietf.org
Delivered-To: i-d-announce@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 46C1E13FC0D for <i-d-announce@ietf.org>; Mon, 30 Oct 2017 15:06:10 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Subject: I-D Action: draft-dupont-dnsop-rfc2845bis-00.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 6.63.2
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <150940117025.28384.5860928779958338857@ietfa.amsl.com>
Date: Mon, 30 Oct 2017 15:06:10 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/i-d-announce/79s_jiEHAGNAqiD4NtJ2xTl1IwI>
X-BeenThere: i-d-announce@ietf.org
X-Mailman-Version: 2.1.22
List-Id: Internet Draft Announcements only <i-d-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i-d-announce/>
List-Post: <mailto:i-d-announce@ietf.org>
List-Help: <mailto:i-d-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 30 Oct 2017 22:06:10 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.


        Title           : Secret Key Transaction Authentication for DNS (TSIG)
        Authors         : Francis Dupont
                          Stephen Morris
	Filename        : draft-dupont-dnsop-rfc2845bis-00.txt
	Pages           : 24
	Date            : 2017-10-30

Abstract:
   This protocol allows for transaction level authentication using
   shared secrets and one way hashing.  It can be used to authenticate
   dynamic updates as coming from an approved client, or to authenticate
   responses as coming from an approved recursive name server.

   No provision has been made here for distributing the shared secrets:
   it is expected that a network administrator will statically configure
   name servers and clients using some out of band mechanism such as
   sneaker-net until a secure automated mechanism for key distribution
   is available.

   This document includes revised original TSIG specifications (RFC2845)
   and the extension for HMAC-SHA (RFC4635).


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-dupont-dnsop-rfc2845bis/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-dupont-dnsop-rfc2845bis-00
https://datatracker.ietf.org/doc/html/draft-dupont-dnsop-rfc2845bis-00


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/