What is DNSSEC?
“DNSSEC” is the DNS Security Extensions and comprises a set of new DNS Resource Records (RRs) and protocol operations to add origin authentication and data integrity to DNS data in responses. It was developed as an open standard in the IETF and deployment has begun on a number of DNS zones. DNSSEC adds digital signatures to DNSSEC data in responses that can be validated by clients using public keys associated with a particular zone. The DNSSEC was designed primarily to protect clients and caches against redirection and cache poisoning attacks.