ObsoletedPROPOSED STANDARDIETF stream

RFC 2845: Secret Key Transaction Authentication for DNS (TSIG)

This RFC has been replaced. Do not implement against it for new work — it was formally obsoleted by RFC 8945.

Current document in this lineage: RFC 8945Secret Key Transaction Authentication for DNS (TSIG)

In plain English — editorial summary, not part of the RFC

This protocol allows for transaction level authentication using shared secrets and one way hashing. It can be used to authenticate dynamic updates as coming from an approved client, or to authenticate responses as coming from an approved recursive name server. [STANDARDS-TRACK]

Document record

Document ID
RFC2845
Published
May 2000
Authors
P. Vixie; O. Gudmundsson; D. Eastlake 3rd; B. Wellington
Status
PROPOSED STANDARD
Stream
IETF
Area
int
Pages
15
Also known as
Obsoleted by:
RFC 8945
Updates:
RFC 1035

Topics

Standards lineage

This document is one revision in a chain of 3 RFCs, each formally replacing the one before it.

  1. RFC 2845 (2000)
  2. RFC 4635 (2006)
  3. RFC 8945 (2020)

Read the full history of Secret Key Transaction Authentication for DNS (TSIG)

Referenced by

4 later RFCs formally update or obsolete part of this document.

Related documents

Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.

Also filed under

About this page

The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.

Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.

Data sources · Editorial policy · Report a correction · What is an RFC?

canonical URL: /rfc/2845-secret-key-transaction-authentication-for-dns-tsig