Re: [Technical Errata Reported] RFC6944 (4932)
"Rose, Scott" <[email protected]> Mon, 13 Feb 2017 11:42:54 -0500
| Newsgroups | gmane.ietf.dnsext |
|---|---|
| Message-ID | <[email protected]> |
A reference to RFC 6944 to the whole registry, or the entry for RSA/MD5? There is a ref for the whole table, but not the entry. If this a proposed change to the entry, I agree with the change. Scott On 12 Feb 2017, at 8:47, RFC Errata System wrote: > The following errata report has been submitted for RFC6944, > "Applicability Statement: DNS Security (DNSSEC) DNSKEY Algorithm > Implementation Status". > > -------------------------------------- > You may review the report below and at: > http://www.rfc-editor.org/errata_search.php?rfc=6944&eid=4932 > > -------------------------------------- > Type: Technical > Reported by: Petr Spacek <[email protected]> > > Section: 3 > > Original Text > ------------- > This document lists the implementation status of cryptographic > algorithms used with DNSSEC. These algorithms are maintained in an > IANA registry at > http://www.iana.org/assignments/dns-sec-alg-numbers. > Because this document establishes the implementation status of > every > algorithm, it has been listed as a reference for the registry > itself. > > Corrected Text > -------------- > This document lists the implementation status of cryptographic > algorithms used with DNSSEC. These algorithms are maintained in an > IANA registry at > http://www.iana.org/assignments/dns-sec-alg-numbers. > Because this document establishes the implementation status of > every > algorithm, it has been listed as a reference for the registry > itself. > > Given significance of status change of RSAMD5 algorithm, a > reference > to this RFC should be added to the registry. > > Notes > ----- > "RSAMD5 has an implementation status of Must Not Implement because of > known weaknesses in MD5." > > This is very important. An additional reference would lower likelihood > that DNS Implementors will overlook the important piece of > information. > > Instructions: > ------------- > This erratum is currently posted as "Reported". If necessary, please > use "Reply All" to discuss whether it should be verified or > rejected. When a decision is reached, the verifying party > can log in to change the status and edit the report, if necessary. > > -------------------------------------- > RFC6944 (draft-ietf-dnsext-dnssec-algo-imp-status-04) > -------------------------------------- > Title : Applicability Statement: DNS Security (DNSSEC) > DNSKEY Algorithm Implementation Status > Publication Date : April 2013 > Author(s) : S. Rose > Category : PROPOSED STANDARD > Source : DNS Extensions > Area : Internet > Stream : IETF > Verifying Party : IESG ================================== Scott Rose, NIST [email protected] ph: +1-301-975-8439 Google Voice: +1-571-249-3671 _______________________________________________ dnsext mailing list [email protected] https://www.ietf.org/mailman/listinfo/dnsext