RFC 3090: DNS Security Extension Clarification on Zone Status
This RFC has been replaced. Do not implement against it for new work — it was formally obsoleted by RFC 4033, RFC 4034, RFC 4035.
Current document in this lineage: RFC 4033 — DNS Security Introduction and Requirements; RFC 4034 — Resource Records for the DNS Security Extensions; RFC 4035 — Protocol Modifications for the DNS Security Extensions
In plain English — editorial summary, not part of the RFC
The definition of a secured zone is presented, clarifying and updating sections of RFC 2535. RFC 2535 defines a zone to be secured based on a per algorithm basis, e.g., a zone can be secured with RSA keys, and not secured with DSA keys. This document changes this to define a zone to be secured or not secured regardless of the key algorithm used (or not used). To further simplify the determination of a zone's status, "experimentally secure" status is deprecated. [STANDARDS-TRACK]
Document record
- Document ID
- RFC3090
- Published
- March 2001
- Authors
- E. Lewis
- Status
- PROPOSED STANDARD
- Stream
- IETF
- Area
- int
- Pages
- 11
- Also known as
- —
Topics
Standards lineage
This document is one revision in a chain of 13 RFCs, each formally replacing the one before it.
- RFC 2065 (1997)
- RFC 2535 (1999)
- RFC 3008 (2000)
- RFC 3090 (2001)
- RFC 3445 (2002)
- RFC 3655 (2003)
- RFC 3658 (2003)
- RFC 3755 (2004)
- RFC 3757 (2004)
- RFC 3845 (2004)
- RFC 4033 (2005)
- RFC 4034 (2005)
- RFC 4035 (2005) ✓
Read the full history of Protocol Modifications for the DNS Security Extensions →
Referenced by
4 later RFCs formally update or obsolete part of this document.
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 3197Applicability Statement for DNS MIB ExtensionsCurrent
November 2001
- RFC 2845Secret Key Transaction Authentication for DNS (TSIG)Obsoleted
May 2000
- RFC 2606Reserved Top Level DNS NamesUpdated
June 1999
- RFC 2182Selection and Operation of Secondary DNS ServersCurrent
July 1997
- RFC 2181Clarifications to the DNS SpecificationUpdated
July 1997
- RFC 1996A Mechanism for Prompt Notification of Zone Changes (DNS NOTIFY)Current
August 1996
- RFC 1995Incremental Zone Transfer in DNSUpdated
August 1996
- RFC 1982Serial Number ArithmeticCurrent
August 1996
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?