All

During our DNSOP chairs call with Warren, I brought up Paul Hoffman's
comments on "RFC Required" for adding new algorithms with the MAY-level
requirements.  During this following spirited discussion, we uncovered some
recent updates to IANA registries and the Authors MUST update their
document.

First, the "DNS Security Algorithm Numbers" Registry (
https://www.iana.org/assignments/dns-sec-alg-numbers/dns-sec-alg-numbers.xhtml#dns-sec-alg-numbers-1)
has been updated two new code points, 17 and 23:

+=====+=========================+============+=========+========+===========+
|Value|Description              | Mnemonic   | Zone    | Trans. | Reference
|
|     |                         |            | Signing | Sec.   |
|
+=====+=========================+============+=========+========+===========+

| 17  | SM2 signing algorithm   | SM2SM3     | Y       | *      | RFC9563
|
|     | w/SM3 hashing algorithm |            |         |        |
|
| 23  | GOST R 34.10-2012       | ECC-GOST12 | Y       | *      | RFC9558
|
+-----+-------------------------+------------+---------+--------+-----------+


Second, the "Digest Algorithms" aka "DNSSEC Delegation Signer (DS) Resource
Record (RR) Type Digest Algorithms" Registry
(
https://www.iana.org/assignments/ds-rr-types/ds-rr-types.xhtml#ds-rr-types-1)
has been updated with corresponding code points:


+=====+===================+===========+==========+
|Value|Description        |Status     |Reference |
+=====+===================+===========+==========+

| 5   | GOST R 34.11-2012 | OPTIONAL | [RFC9558] |
| 6   | SM3               | OPTIONAL | [RFC9563] |
+-----+-------------------+----------+-----------+


The authors are going to update their document to add these code points and
their new initial values to sections 3 and 4, as well as the appropriate
IANA Consideration updates.


We wanted DNSOP to be aware and the authors will make these updates quickly.

Thanks
tim
_______________________________________________
DNSOP mailing list -- dnsop@ietf.org
To unsubscribe send an email to dnsop-le...@ietf.org

Reply via email to