<?xml version='1.0' encoding='UTF-8'?>

<reference anchor='I-D.blacka-dnssec-opt-in'>
<front>
<title>DNSSEC Opt-In</title>

<author initials='R' surname='Arends' fullname='Roy Arends'>
    <organization />
</author>

<date month='December' day='27' year='2004' />

<abstract><t>In DNSSEC (RFC 2535bis, [3], [4], and [5]), delegations to unsigned subzones are cryptographically secured. Maintaining this cryptography is not practical or necessary. This document describes an experimental 'Opt-In' model that allows administrators to omit this cryptography and manage the cost of adopting DNSSEC with large zones.</t></abstract>

</front>

<seriesInfo name='Internet-Draft' value='draft-blacka-dnssec-opt-in-01' />
<format type='TXT'
        target='http://www.ietf.org/internet-drafts/draft-blacka-dnssec-opt-in-01.txt' />
</reference>

