RFC 9718
DNSSEC Trust Anchor Publication for the Root Zone, January 2025
- File formats:
- Also available: XML file for editing
- Status:
- INFORMATIONAL
- Obsoletes:
- RFC 7958
- Authors:
- J. Abley
J. Schlyter
G. Bailey
P. Hoffman - Stream:
- IETF
- Source:
- dnsop (ops)
Cite this RFC: TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC9718
Discuss this RFC: Send questions or comments to the mailing list dnsop@ietf.org
Other actions: Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 9718
Abstract
The root zone of the global Domain Name System (DNS) is cryptographically signed using DNS Security Extensions (DNSSEC).
In order to obtain secure answers from the root zone of the DNS using DNSSEC, a client must configure a suitable trust anchor. This document describes the format and publication mechanisms IANA uses to distribute the DNSSEC trust anchors.
This document obsoletes RFC 7958.
For the definition of Status, see RFC 2026.
For the definition of Stream, see RFC 8729.