A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the DNS PRIVate Exchange Working Group of the IETF. Title : TLS for DNS: Initiation and Performance Considerations Authors : Zi Hu Liang Zhu John Heidemann Allison Mankin Duane Wessels Paul Hoffman Filename : draft-ietf-dprive-start-tls-for-dns-00.txt Pages : 15 Date : 2015-05-05 Abstract: This document offers an approach to initiating TLS for DNS: use of a dedicated DNS-over-TLS port, and fallback to a mechanism for upgrading a DNS-over-TCP connection over the standard port (TCP/53) to a DNS-over-TLS connection. Encryption provided by TLS eliminates opportunities for eavesdropping on DNS queries in the network, such as discussed in RFC 7258. In addition it specifies two usage profiles for DNS-over-TLS. Finally, it provides advice on performance considerations to minimize overheads from using TCP and TLS with DNS, pertaining to both approaches. The IETF datatracker status page for this draft is: https://datatracker.ietf.org/doc/draft-ietf-dprive-start-tls-for-dns/ There's also a htmlized version available at: https://tools.ietf.org/html/draft-ietf-dprive-start-tls-for-dns-00 Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org. Internet-Drafts are also available by anonymous FTP at: ftp://ftp.ietf.org/internet-drafts/ _______________________________________________ I-D-Announce mailing list I-D-Announce@ietf.org https://www.ietf.org/mailman/listinfo/i-d-announce Internet-Draft directories: http://www.ietf.org/shadow.html or ftp://ftp.ietf.org/ietf/1shadow-sites.txt