RFC 8310: Usage Profiles for DNS over TLS and DNS over DTLS
Recent RFCs 2018-03-21
Summary:
This document discusses usage profiles, based on one or more
authentication mechanisms, which can be used for DNS over Transport
Layer Security (TLS) or Datagram TLS (DTLS). These profiles can
increase the privacy of DNS transactions compared to using only
cleartext DNS. This document also specifies new authentication
mechanisms -- it describes several ways that a DNS client can use an
authentication domain name to authenticate a (D)TLS connection to a
DNS server. Additionally, it defines (D)TLS protocol profiles for
DNS clients and servers implementing DNS over (D)TLS. This document
updates RFC 7858.