Specifications

On this page, you will find all the technical information about the standards we support and the features we have to offer to you.

Name Server Network

Lightning Wire Labs operates a global name server network that provides a reliable, fault-tolerant and of course fast service at all times.

Cryptography

RFCs

  • RFC 1034: Domain names - concepts and facilities
  • RFC 1035: Domain names - implementation and specification
  • RFC 1464: Using the Domain Name System To Store Arbitrary String Attributes
  • RFC 1876: A Means for Expressing Location Information in the Domain Name System
  • RFC 1982: Serial Number Arithmetic
  • RFC 1925: The Twelve Networking Truths
  • RFC 1995: Incremental Zone Transfer in DNS
  • RFC 1996: A Mechanism for Prompt Notification of Zone Changes (DNS NOTIFY)
  • RFC 2136: Dynamic Updates in the Domain Name System (DNS UPDATE)
  • RFC 2181: Clarifications to the DNS Specification
  • RFC 2230: Key Exchange Delegation Record for the DNS
  • RFC 2308: Negative Caching of DNS Queries (DNS NCACHE)
  • RFC 2536: DSA KEYs and SIGs in the Domain Name System (DNS)
  • RFC 2538: Storing Certificates in the Domain Name System (DNS)
  • RFC 2539: Storage of Diffie-Hellman Keys in the Domain Name System (DNS)
  • RFC 2671: Extension Mechanisms for DNS (EDNS0)
  • RFC 2782: A DNS RR for specifying the location of services (DNS SRV)
  • RFC 2845: Secret Key Transaction Authentication for DNS (TSIG)
  • RFC 3403: Dynamic Delegation Discovery System (DDDS) Part Three: The Domain Name System (DNS) Database
  • RFC 3596: DNS Extensions to Support IP Version 6
  • RFC 3597: Handling of Unknown DNS Resource Record (RR) Types
  • RFC 3658: Delegation Signer (DS) Resource Record (RR)
  • RFC 4025: A Method for Storing IPsec Keying Material in DNS
  • RFC 4255: Using DNS to Securely Publish Secure Shell (SSH) Key Fingerprints
  • RFC 4343: Domain Name System (DNS) Case Insensitivity Clarification
  • RFC 4398: Storing Certificates in the Domain Name System (DNS)
  • RFC 4592: The Role of Wildcards in the Domain Name System
  • RFC 4701: A DNS Resource Record (RR) for Encoding Dynamic Host Configuration Protocol (DHCP) Information (DHCID RR)
  • RFC 4892: Requirements for a Mechanism Identifying a Name Server Instance
  • RFC 5001: DNS Name Server Identifier (NSID) Option
  • RFC 5452: Measures for Making DNS More Resilient against Forged Answers

DNSSEC

  • RFC 4033: DNS Security Introduction and Requirements
  • RFC 4034: Resource Records for the DNS Security Extensions, Protocol Modifications for the DNS Security Extensions
  • RFC 4035: Protocol Modifications for the DNS Security Extensions
  • RFC 4509: Use of SHA-256 in DNSSEC Delegation Signer (DS) Resource Records (RRs)
  • RFC 5155: DNS Security (DNSSEC) Hashed Authenticated Denial of Existence
  • RFC 5702: Use of SHA-2 Algorithms with RSA in DNSKEY and RRSIG Resource Records for DNSSEC
  • RFC 5933: Use of GOST Signature Algorithms in DNSKEY and RRSIG Resource Records for DNSSEC
  • RFC 6840: Clarifications and Implementation Notes for DNS Security (DNSSEC)
  • RFC 7344: Automating DNSSEC Delegation Trust Maintenance
  • draft-ietf-dnsext-ecdsa: Elliptic Curve DSA for DNSSEC