DNSSEC
What is DNSSEC?
Domain Name System Security Extensions, a suite of specifications that adds authentication to DNS responses to protect against cache poisoning and spoofing attacks.
Terms that appear alongside dnssec
Each of these is named in at least one of the same controls as dnssec. The number is how many controls name both.
- authentication 5 shared controls
- zero trust 5 shared controls
- integrity 4 shared controls
- nist 4 shared controls
- firewall 4 shared controls
- dns security 4 shared controls
- zero trust network access 4 shared controls
- gateway 4 shared controls
Frameworks that govern dnssec
What the standards actually require on dnssec
Requirements naming dnssec across 6 standards, quoted from the control text.
Security Dimension 6 Data Integrity per X.805 Clause 6.6: Data Integrity ensures the correctness or accuracy of data. The data is protected against unauthorized modification + deletion + creation + replication and provides an indication of these unauthorized a...
X805-Dim6-Data-Integrity-Correctness-Accuracy-Unauthorized-Modification-Deletion-Detection · ITU-T X.805 Security Dimension 6 - Data Integrity + Correctness + Accuracy + Unauthorized Modification Prevention + Deletion Detection + Hashing + HMAC + Digital Signatures + Merkle Trees + Blockchain Integrity + File Integrity Monitoring (FIM) →Request and perform data origin authentication and data integrity verification on name/address resolution responses; DNSSEC validation.
SC-21 · Secure Name/Address Resolution Service (Recursive or Caching Resolver) →Request and perform data origin authentication and data integrity verification on name/address resolution responses; DNSSEC validation.
SC-21 · Secure Name/Address Resolution Service (Recursive or Caching Resolver) →Request and perform data origin authentication and data integrity verification on name/address resolution responses; DNSSEC validation.
SC-21 · Secure Name/Address Resolution Service (Recursive or Caching Resolver) →Request and perform data origin authentication and data integrity verification on name/address resolution responses; DNSSEC validation.
SC-21 · Secure Name/Address Resolution Service (Recursive or Caching Resolver) →Request and perform data origin authentication and data integrity verification on name/address resolution responses; DNSSEC validation.
SC-21 · Secure Name/Address Resolution Service (Recursive or Caching Resolver) →Questions people ask about dnssec
What is DNSSEC?
Why is DNSSEC important for compliance?
Which compliance frameworks address DNSSEC?
Where can I learn more about DNSSEC?
See how DNSSEC applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.