参考链接 ======================================== RFC ---------------------------------------- - `RFC 920 Domain Requirements `_ - `RFC 1034 DOMAIN NAMES CONCEPTS AND FACILITIES `_ - `RFC 1035 DOMAIN NAMES IMPLEMENTATION AND SPECIFICATION `_ - `RFC 1123 Requirements for Internet Hosts -- Application and Support `_ - `RFC 2535 Domain Name System Security Extensions `_ - `RFC 2930 Secret Key Establishment for DNS (TKEY RR) `_ - `RFC 2931 DNS Request and Transaction Signatures ( SIG(0)s ) `_ - `RFC 3596 Legacy Resolver Compatibility for Delegation Signer (DS) `_ - `RFC 3755 DNS Extensions to Support IP Version 6 `_ - `RFC 5001 Automated Updates of DNS Security (DNSSEC) Trust Anchors `_ - `RFC 5936 DNS Zone Transfer Protocol `_ - `RFC 5966 DNS Transport over TCP - Implementation Requirements `_ - `RFC 6376 DomainKeys Identified Mail (DKIM) Signatures `_ - `RFC 6762 Multicast DNS `_ - `RFC 6891 Extension Mechanisms for DNS (EDNS(0)) `_ - `RFC 6895 DNS IANA Considerations `_ - `RFC 7766 DNS Transport over TCP - Implementation Requirements `_ - `RFC 7858 Specification for DNS over Transport Layer Security (TLS) `_ - `RFC 7871 Client Subnet in DNS Queries `_ - `RFC 8082 NXDOMAIN `_ - `RFC 8482 Providing Minimal-Sized Responses to DNS Queries That Have QTYPE=ANY `_ - `RFC 8484 DNS Queries over HTTPS (DoH) `_ - `RFC 8490 DNS Stateful Operations `_ - `RFC 8499 DNS Terminology `_ Whois 相关 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ - `RFC 812 NICNAME/WHOIS `_ - `RFC 954 NICNAME/WHOIS `_ - `RFC 2167 Referral Whois (RWhois) Protocol V1.5 `_ - `RFC 3912 WHOIS Protocol Specification `_ - `RFC 7485 Inventory and Analysis of WHOIS Registration Objects `_ RDAP 相关 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ - `RFC7480 HTTP Usage in the Registration Data Access Protocol (RDAP) `_ - `RFC7481 Security Services for the Registration Data Access Protocol (RDAP) `_ - `RFC7484 Finding the Authoritative Registration Data (RDAP) Service `_ - `RFC8056 Registration Data Access Protocol (RDAP) Object Tagging `_ - `RFC9082 Registration Data Access Protocol (RDAP) Query Format `_ - `RFC9083 JSON Responses for the Registration Data Access Protocol (RDAP) `_ 相关标准 ---------------------------------------- - `Registration Data Access Protocol (RDAP) `_ 工具 ---------------------------------------- - `Unbound `_ - `bind9 `_ 研究文章 ---------------------------------------- - `DGA域名的今生前世:缘起、检测、与发展 `_ - `DNSSEC原理和分析 `_ - Plohmann D, Yakdan K, Klatt M, et al. A comprehensive measurement study of domain generating malware[C]//25th {USENIX} Security Symposium ({USENIX} Security 16). 2016: 263-278. - An End-to-End Large-Scale Measurement of DNS-over-Encryption: How Far Have We Come? 相关CVE ---------------------------------------- - `SIGRed – Resolving Your Way into Domain Admin: Exploiting a 17 Year-old Bug in Windows DNS Servers `_