Handling of DNS Zone Signing Keys

Document Type Expired Internet-Draft (individual)
Author Edward Lewis 
Last updated 2021-06-19 (latest revision 2001-03-02)
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


DNS Security Extensions require a greater interaction between zone administrations sharing a zone cut. The center of the interaction is the handling of the zone keys of the child and the signature applied by the parent. DNSSEC does not include a protocol for this, but the means of this interaction need definition to maintain the security of DNS.


Edward Lewis (Ed.Lewis@neustar.biz)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)