TKEY record
From Wikipedia, the free encyclopedia
TKEY is a record type of the Domain Name System.
TKEY RR can used in number of different modes to establish shared keys between a DNS resolver and Server.
Contents |
[edit] TKEY record format
NAME
|
Key name, which must be unique on client and server | TKEY | TKEY (249) | CLASS | ANY (255 | TTL | 0 TTL (since TKEY records must not be cached) | RDLENGTH Length of RDATA field | RDATA (variable-length structure containing the timestamp, algorithm, mode, hash data and error) |
[edit] Mode Field values
- 0 - Reserved
- 1 - Server assignment
- 2 - Diffie-Hellman exchange
- 3 - Generic Security Service Algorithm for Secret Key Transaction
- 4 - Resolver assignment
- 5 - key deletion
- 6-65534 - available
- 65535 - reserved;
[edit] See also
[edit] References
- RFC 2930, "Secret Key Establishment for DNS (TKEY RR)", D. Eastlake, September 2000