CurrentPROPOSED STANDARDIETF stream

RFC 8598: Split DNS Configuration for the Internet Key Exchange Protocol Version 2 (IKEv2)

In plain English — editorial summary, not part of the RFC

This document defines two Configuration Payload Attribute Types (INTERNAL_DNS_DOMAIN and INTERNAL_DNSSEC_TA) for the Internet Key Exchange Protocol version 2 (IKEv2). These payloads add support for private (internal-only) DNS domains. These domains are intended to be resolved using non-public DNS servers that are only reachable through the IPsec connection. DNS resolution for other domains remains unchanged. These Configuration Payloads only apply to split- tunnel configurations.

Document record

Document ID
RFC8598
Published
May 2019
Authors
T. Pauly; P. Wouters
Status
PROPOSED STANDARD
Stream
IETF
Area
sec
Pages
16
Also known as

Topics

Related documents

Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.

Also filed under

About this page

The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.

Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.

Data sources · Editorial policy · Report a correction · What is an RFC?

canonical URL: /rfc/8598-split-dns-configuration-for-the-internet-key-exchange-protocol-version-2-ikev2