DNSSEC

GPTKB entity

Statements (52)
Predicate Object
gptkbp:instanceOf gptkb:International_Standard
gptkbp:abbreviation gptkb:DNSSEC
gptkbp:canBeDeployedOn authoritative DNS servers
recursive resolvers
gptkbp:category gptkb:International_Standard
gptkb:Domain_Name_System
Authentication protocols
Cryptography
Network security
gptkbp:compatibleWith confidentiality
gptkbp:definedIn gptkb:RFC_4033
gptkb:RFC_4034
gptkb:RFC_4035
gptkbp:enables authenticated denial of existence
validation of DNS responses
gptkbp:fullName gptkb:Domain_Name_System_Security_Extensions
https://www.w3.org/2000/01/rdf-schema#label DNSSEC
gptkbp:introduced 2005
gptkbp:prevention DNS spoofing
cache poisoning
gptkbp:protectedBy DNS records
availability
confidentiality of DNS queries
gptkbp:provides data integrity
origin authentication
gptkbp:purpose secure DNS information
gptkbp:relatedTo gptkb:DNS
Internet security
gptkbp:requires key management
zone signing
gptkbp:RFCStatus Proposed Standard
gptkbp:rootZoneSigned 2010
gptkbp:standardizedBy gptkb:IETF
gptkbp:supportedBy gptkb:BIND
gptkb:Cloudflare_DNS
gptkb:Google_Public_DNS
gptkb:Knot_DNS
gptkb:PowerDNS
gptkb:Unbound
gptkbp:uses gptkb:DNSKEY_records
gptkb:Delegation_Signer_(DS)_records
gptkb:NSEC3_records
gptkb:NSEC_records
gptkb:Resource_Record_Signatures_(RRSIG)
public key cryptography
chain of trust
digital signatures
key signing key (KSK)
zone signing key (ZSK)
gptkbp:bfsParent gptkb:ICANN
gptkb:IETF
gptkbp:bfsLayer 4