Cite this RFC:TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC8945
Discuss this RFC: Send questions or comments to the mailing listdnsop@ietf.org
Other actions:View Errata | Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 8945
This document describes a protocol for transaction-levelauthentication using shared secrets and one-way hashing. It can beused to authenticate dynamic updates to a DNS zone as coming from anapproved client or to authenticate responses as coming from anapproved name server.
No recommendation is made here for distributing the shared secrets;it is expected that a network administrator will statically configurename servers and clients using some out-of-band mechanism.
This document obsoletes RFCs 2845 and 4635.
For the definition ofStatus,seeRFC 2026.
For the definition ofStream, seeRFC 8729.