@misc{rfc8598, series = {Request for Comments}, number = 8598, howpublished = {RFC 8598}, publisher = {RFC Editor}, doi = {10.17487/RFC8598}, url = {https://www.rfc-editor.org/info/rfc8598}, author = {Tommy Pauly and Paul Wouters}, title = {{Split DNS Configuration for the Internet Key Exchange Protocol Version 2 (IKEv2)}}, pagetotal = 16, year = 2019, month = may, abstract = {This document defines two Configuration Payload Attribute Types (INTERNAL\_DNS\_DOMAIN and INTERNAL\_DNSSEC\_TA) for the Internet Key Exchange Protocol version 2 (IKEv2). These payloads add support for private (internal-only) DNS domains. These domains are intended to be resolved using non-public DNS servers that are only reachable through the IPsec connection. DNS resolution for other domains remains unchanged. These Configuration Payloads only apply to split- tunnel configurations.}, }