@misc{rfc7646, series = {Request for Comments}, number = 7646, howpublished = {RFC 7646}, publisher = {RFC Editor}, doi = {10.17487/RFC7646}, url = {https://www.rfc-editor.org/info/rfc7646}, author = {P Ebersman and Warren "Ace" Kumari and Chris Griffiths and Jason Livingood and Ralf Weber}, title = {{Definition and Use of DNSSEC Negative Trust Anchors}}, pagetotal = 16, year = 2015, month = sep, abstract = {DNS Security Extensions (DNSSEC) is now entering widespread deployment. However, domain signing tools and processes are not yet as mature and reliable as those for non-DNSSEC-related domain administration tools and processes. This document defines Negative Trust Anchors (NTAs), which can be used to mitigate DNSSEC validation failures by disabling DNSSEC validation at specified domains.}, }