RFC 9460: DNS Service Binding Records (SVCB and HTTPS Resource Records) Specification
By
codewiz
An everything bagel for the brain. Substantive, layered, well-seasoned.
Summary
RFC 9460 specifies two new DNS resource record types - SVCB (Service Binding) and HTTPS - that enable more efficient service discovery and connection establishment. These records allow services to be provided from multiple endpoints with associated configuration parameters, support apex domain aliasing (which CNAME cannot do), and provide performance and privacy benefits by giving clients necessary information before connection attempts. The HTTPS RR is specifically designed for HTTP services as defined in RFC 9110.
Key quotes
· 4 pulledThis document specifies the "SVCB" ("Service Binding") and "HTTPS" DNS resource record (RR) types to facilitate the lookup of information needed to make connections to network services
SVCB records allow a service to be provided from multiple alternative endpoints, each with associated parameters (such as transport protocol configuration)
They also enable aliasing of apex domains, which is not possible with CNAME
By providing more information to the client before it attempts to establish a connection, these records offer potential benefits to both performance and privacy
You might also wanna read
RFC 863: The Discard Protocol Standard for Network Debugging
RFC 863, published in May 1983 by Jon Postel, specifies the Discard Protocol standard for the ARPA Internet community. This protocol defines
datatracker.ietf.org·7mo agoBGP Lab Project Expanded to Include Full IPv6 Feed
The author extends their BGP lab project to support full IPv6 feeds, following requests from readers who previously received IPv4 BGP feeds.
Whosthere: A Go-based LAN discovery tool with interactive TUI for unprivileged network scanning
Whosthere is a Go-based Local Area Network (LAN) discovery tool with an interactive Terminal User Interface (TUI). It performs unprivileged,
Investigating Intermittent ECONNRESET Errors in Local TCP Connections (Part 1)
A technical blog post investigating mysterious ECONNRESET errors occurring between two services communicating over TCP on the same machine.
IPv8: An Alternative IPv4 Successor with Backward Compatibility and Integrated Network Management
This article introduces IPv8, an alternative successor to IPv4 that differs from IPv6 by focusing on integrated network management and singl
How to get a free *.city.state.us locality domain in the US
This article explains how US residents can obtain a free locality domain name (e.g., somename.city.state.us) for their town. It covers the h
