Internet-Draft draft-ietf-dnsop-must-not-sha1-04.txt is now available. It is a work item of the Domain Name System Operations (DNSOP) WG of the IETF.
Title: Deprecating the use of SHA-1 in DNSSEC signature algorithms Authors: Wes Hardaker Warren Kumari Name: draft-ietf-dnsop-must-not-sha1-04.txt Pages: 6 Dates: 2025-03-18 Abstract: This document deprecates the use of the RSASHA1 and RSASHA1-NSEC3-SHA1 algorithms for the creation of DNSKEY and RRSIG records. It updates RFC4034 and RFC5155 as it deprecates the use of these algorithms. The IETF datatracker status page for this Internet-Draft is: https://datatracker.ietf.org/doc/draft-ietf-dnsop-must-not-sha1/ There is also an HTMLized version available at: https://datatracker.ietf.org/doc/html/draft-ietf-dnsop-must-not-sha1-04 A diff from the previous version is available at: https://author-tools.ietf.org/iddiff?url2=draft-ietf-dnsop-must-not-sha1-04 Internet-Drafts are also available by rsync at: rsync.ietf.org::internet-drafts _______________________________________________ DNSOP mailing list -- dnsop@ietf.org To unsubscribe send an email to dnsop-le...@ietf.org