技術標準
RFC、国際化ドメイン名(IDN)、Punycode、RDAPなどの関連標準について説明します。
RDAP(登録データアクセスプロトコル)
Modern, structured replacement for WHOIS using JSON over HTTPS.
EPP(拡張プロビジョニングプロトコル)
Protocol for registrar-registry communication to manage domains.
IDN(国際化ドメイン名)
Domain name containing non-ASCII characters from various writing systems.
ピュニコード
ASCII encoding for internationalized domain names (xn-- prefix).
TTL(Time To Live)
DNS record value specifying cache duration in seconds.
Anycast DNS
Network method routing DNS queries to the nearest of multiple servers.
DNS-over-HTTPS (DoH)
Protocol encrypting DNS queries over HTTPS for privacy.
DNS-over-TLS (DoT)
Protocol encrypting DNS queries over TLS on port 853.
データエスクロー
ICANN-required backup of registration data with a trusted third party.
DNS伝播
Time for DNS changes to spread across all resolvers worldwide.
ワイルドカードDNSレコード
DNS record using * to match all undefined subdomains.
グルーレコード
A/AAAA record in parent zone preventing circular nameserver dependencies.
RFC(意見募集文書)
IETF formal document defining internet protocols and standards.
IDNA(アプリケーションにおける国際化ドメイン名)
Technical framework governing how international characters are validated and encoded in domain names.
WHOISプロトコル
Plain-text domain lookup protocol on TCP port 43, being replaced by RDAP.
DNS-over-QUIC (DoQ)
DNS encryption over QUIC (UDP port 853), offering lower latency than DoH or DoT.
ECS(EDNSクライアントサブネット)
DNS extension sharing partial client IP with authoritative servers for geolocation-based responses.
TSIG(トランザクション署名)
Shared-secret HMAC mechanism authenticating DNS messages between servers.
AXFR / IXFR(ゾーン転送)
Protocol for replicating DNS zone data from primary to secondary nameservers.
NSEC / NSEC3 (DNSSEC 存在否定)
DNSSEC record types cryptographically proving a domain name does not exist.
DNSKEYレコード
DNS record holding the public key used to verify DNSSEC signatures in a zone.
RRSIGレコード
Cryptographic signature record attached to DNS record sets for DNSSEC validation.