RFC 2065:Domain Name System Security Extensions
RFC-Ref

cryptography


Click on the red underlined text to get to the source

... time to live (which may be longer than its current time to live but cannot be shorter), the cryptographic algorithm in use, and the actual signature. ...


... signer's domain name. This is done using cryptographic techniques and the signer's private key ...
... (The above specifications are identical to the corresponding part of Public Key Cryptographic Standard #1 [PKCS1].) ...


... public keys for one or more zones. With trusted keys, a resolver willing to perform cryptography can progress securely through the secure DNS zone structure to the zone of interest as described in Section 6.3. Such ...
... Any security aware resolver willing to do cryptography SHOULD assert the CD bit on all queries ...



Google
Web
RFC-Ref