z-logo
open-access-imgOpen Access
Authenticated Denial of Existence in the DNS
Author(s) -
R. Gieben,
W. Mekking
Publication year - 2014
Publication title -
rfc
Language(s) - English
Resource type - Reports
DOI - 10.17487/rfc7129
Subject(s) - denial , denial of service attack , domain name system , computer science , psychology , world wide web , psychoanalysis , the internet
Authenticated denial of existence allows a resolver to validate that acertain domain name does not exist. It is also used to signal that adomain name exists but does not have the specific resource record (RR)type you were asking for. When returning a negative DNS SecurityExtensions (DNSSEC) response, a name server usually includes up to twoNSEC records. With NSEC version 3 (NSEC3), this amount is three. Thisdocument provides additional background commentary and some contextfor the NSEC and NSEC3 mechanisms used by DNSSEC to provideauthenticated denial-of-existence responses.

The content you want is available to Zendy users.

Already have an account? Click here to sign in.
Having issues? You can contact us here
Accelerating Research

Address

John Eccles House
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom