I-D Action: draft-fbw-dnsop-dnszonehop-00.txt

internet-drafts@ietf.org Sun, 21 July 2024 08:34 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: i-d-announce@ietf.org
Delivered-To: i-d-announce@ietfa.amsl.com
Received: from [10.244.2.81] (unknown [104.131.183.230]) by ietfa.amsl.com (Postfix) with ESMTP id 2CDA2C14F5E7 for <i-d-announce@ietf.org>; Sun, 21 Jul 2024 01:34:29 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Subject: I-D Action: draft-fbw-dnsop-dnszonehop-00.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 12.19.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <172155086877.284.9054542915623345990@dt-datatracker-659f84ff76-9wqgv>
Date: Sun, 21 Jul 2024 01:34:28 -0700
Message-ID-Hash: XC6NUWVSSF5ZNUCSTSPLNGJ4SGQRWBPY
X-Message-ID-Hash: XC6NUWVSSF5ZNUCSTSPLNGJ4SGQRWBPY
X-MailFrom: internet-drafts@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-i-d-announce.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc4
Reply-To: internet-drafts@ietf.org
List-Id: Internet Draft Announcements only <i-d-announce.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/i-d-announce/Kw8uLWnzJZRONaec3IuH0o1yqDk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i-d-announce>
List-Help: <mailto:i-d-announce-request@ietf.org?subject=help>
List-Owner: <mailto:i-d-announce-owner@ietf.org>
List-Post: <mailto:i-d-announce@ietf.org>
List-Subscribe: <mailto:i-d-announce-join@ietf.org>
List-Unsubscribe: <mailto:i-d-announce-leave@ietf.org>

Internet-Draft draft-fbw-dnsop-dnszonehop-00.txt is now available.

   Title:   Zone Hopping: A method to prevent zone-walking in DNSSEC
   Authors: Fatema Bannat Wala
            Stephan K Bohacek
            Nick Buraglio
   Name:    draft-fbw-dnsop-dnszonehop-00.txt
   Pages:   9
   Dates:   2024-07-21

Abstract:

   DNS Security Extension (DNSSEC) as defined by [RFC9364] was developed
   to address significant security integrity flaws in DNS.  Within
   certain circumstances, information leakage may be possible stemming
   from a known DNSSEC vulnerability that facilitates a process known as
   zone walking, which enables the efficient collection of all FQDNs
   from a given environment.  This document describes the problem space
   as outlined in [IEEE-ZoneHopping] and offers a potential solution,
   called Zone-Hopping, to aid in addressing the domain information
   leakage capable via Zone-walking while preserving the integrity of
   the records for which DNSSEC was originally introduced.

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-fbw-dnsop-dnszonehop/

There is also an HTMLized version available at:
https://datatracker.ietf.org/doc/html/draft-fbw-dnsop-dnszonehop-00

Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts