RFC 2065:Domain Name System Security Extensions
RFC-Ref

digital signature


Click on the red underlined text to get to the source

... Section 4 discusses the SIG digital signature resource record, its structure, use in DNS responses ...


... resource records in the DNS cryptographically generated digital signatures. Commonly, there will be a single private key that signs for an entire zone. If ...
... A digital signature will fail to verify if any change has occurred to the data between the time it was originally signed and the time the signature ...
... This could be avoided by leaving the time-to-live out of the digital signature, but that would allow unscrupulous servers to set arbitrarily long time to live values undetected. Instead, we include ...


... The algorithm number is an octet specifying the digital signature algorithm used parallel to the algorithm ...
... retrieval is the result of wild card substitution, it is necessary for the resolver to use the original form of the name in verifying the digital signature. This field helps optimize the determination of the original form thus reducing the effort in authenticating signed data ...



Google
Web
RFC-Ref