<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.2 (Ruby 3.2.2) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-lenders-dns-cbor-06" category="std" consensus="true" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.18.2 -->
  <front>
    <title abbrev="dns+cbor">A Concise Binary Object Representation (CBOR) of DNS Messages</title>
    <seriesInfo name="Internet-Draft" value="draft-lenders-dns-cbor-06"/>
    <author fullname="Martine Sophie Lenders">
      <organization abbrev="TU Dresden">TUD Dresden University of Technology</organization>
      <address>
        <postal>
          <street>Helmholtzstr. 10</street>
          <city>Dresden</city>
          <code>D-01069</code>
          <country>Germany</country>
        </postal>
        <email>martine.lenders@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Carsten Bormann">
      <organization>Universität Bremen TZI</organization>
      <address>
        <email>cabo@tzi.org</email>
      </address>
    </author>
    <author fullname="Thomas C. Schmidt">
      <organization>HAW Hamburg</organization>
      <address>
        <email>t.schmidt@haw-hamburg.de</email>
      </address>
    </author>
    <author initials="M." surname="Wählisch" fullname="Matthias Wählisch">
      <organization abbrev="TU Dresden &amp; Barkhausen Institut">TUD Dresden University of Technology &amp; Barkhausen Institut</organization>
      <address>
        <postal>
          <street>Helmholtzstr. 10</street>
          <city>Dresden</city>
          <code>D-01069</code>
          <country>Germany</country>
        </postal>
        <email>m.waehlisch@tu-dresden.de</email>
      </address>
    </author>
    <date year="2023" month="November" day="17"/>
    <area>Applications</area>
    <workgroup>CBOR</workgroup>
    <keyword>Internet-Draft</keyword>
    <keyword>CBOR</keyword>
    <keyword>DNS</keyword>
    <abstract>
      <?line 72?>

<t>This document specifies a compressed data format of DNS messages using
the Concise Binary Object Representation <xref target="RFC8949"/>.
The primary purpose is to keep DNS messages small in constrained networks.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://anr-bmbf-pivot.github.io/draft-lenders-dns-cbor/draft-lenders-dns-cbor.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-lenders-dns-cbor/"/>.
      </t>
      <t>
        Discussion of this document takes place on the
        CBOR Working Group mailing list (<eref target="mailto:cbor@ietf.org"/>),
        which is archived at <eref target="https://mailarchive.ietf.org/arch/browse/cbor/"/>.
        Subscribe at <eref target="https://www.ietf.org/mailman/listinfo/cbor/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/anr-bmbf-pivot/draft-lenders-dns-cbor"/>.</t>
    </note>
  </front>
  <middle>
    <?line 79?>

<section anchor="introduction">
      <name>Introduction</name>
      <t>In constrained networks <xref target="RFC7228"/>, the link layer may restrict the payload sizes to
only a few hundreds bytes.  Encrypted DNS resolution, such as DNS over HTTPS (DoH) <xref target="RFC8484"/> or
DNS over CoAP (DoC) <xref target="I-D.ietf-core-dns-over-coap"/>, may lead to DNS message sizes that exceed this limit, even when
implementing header compression such as 6LoWPAN IPHC <xref target="RFC6282"/> or SCHC <xref target="RFC8724"/>,
<xref target="RFC8824"/>.</t>
      <t>Although adoption layers such as 6LoWPAN <xref target="RFC4944"/> or SCHC <xref target="RFC8724"/> offer fragmentation to
comply with small MTUs, fragmentation should be avoided in constrained networks, because
fragmentation combined with high packet loss multiplies the loss.  As such, a compression
format for DNS messages is needed.</t>
      <t>This document specifies a compressed data format for DNS messages.  DNS messages are encoded in
Concise Binary Object Representation (CBOR) <xref target="RFC8949"/> and, additionally, unnecessary or
redundant information is removed.  To use the outcome of this specification in DoH and DoC,
this document also specifies a Media Type header for DoH and a Content-Format option for DoC.</t>
    </section>
    <section anchor="terminology">
      <name>Terminology</name>
      <t>CBOR types (unsigned integer, byte string, text string, arrays, etc.) are used as defined in
<xref target="RFC8949"/>.</t>
      <t>TBD DNS server and client.</t>
      <t>A DNS query is a message that queries DNS information from an upstream DNS resolver.</t>
      <t>The term "constrained networks" is used as defined in <xref target="RFC7228"/>.</t>
      <t>The key words "<bcp14>MUST</bcp14>", "<bcp14>MUST NOT</bcp14>", "<bcp14>REQUIRED</bcp14>", "<bcp14>SHALL</bcp14>", "<bcp14>SHALL
NOT</bcp14>", "<bcp14>SHOULD</bcp14>", "<bcp14>SHOULD NOT</bcp14>", "<bcp14>RECOMMENDED</bcp14>", "<bcp14>NOT RECOMMENDED</bcp14>",
"<bcp14>MAY</bcp14>", and "<bcp14>OPTIONAL</bcp14>" in this document are to be interpreted as
described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they
appear in all capitals, as shown here.</t>
      <?line -18?>

</section>
    <section anchor="cbor-representations-applicationdnscbor">
      <name>CBOR Representations (application/dns+cbor)</name>
      <t>To keep overhead minimal, a DNS message is represented as CBOR arrays.  All CBOR items used in
this specification are of definite length.  CBOR arrays that do not follow the length
definitions of this or follow-up specifications, <bcp14>MUST</bcp14> be silently ignored.  It is assumed that
DNS query and DNS response are distinguished message types and that the query can be mapped to
the response by the transfer protocol of choice.  To define the representation of binary
objects we use the Concise Data Definition Language (CDDL) <xref target="RFC8610"/>.</t>
      <figure anchor="fig_dns-msg">
        <name>This document defines both DNS Queries and Responses in CDDL</name>
        <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-message = dns-query / dns-response
]]></sourcecode>
      </figure>
      <t>If, for any reason, a DNS message is not representable in the CBOR format specified in this
document, a fallback to the another DNS message format, e.g., the classic DNS wire format, <bcp14>MUST</bcp14>
always be possible.</t>
      <section anchor="sec_domain-names">
        <name>Domain Name Representation</name>
        <t>Domain names are represented in their commonly known string format (e.g., "example.org", see Section
2.3.1 in <xref target="RFC1035"/>) and in IDNA encoding <xref target="RFC5890"/> as a text string. For the purpose of this
document, domain names remain case-insensitive as specified in <xref target="RFC1035"/>.</t>
        <t>The representation of a domain name is defined in <xref target="fig_domain-name"/>.</t>
        <t>TBD: represent names as components (<tt>(* tstr)</tt>), provide name compression when <xref target="I-D.ietf-cbor-packed"/> is
updated for the reference format and table building discussed at IETF 118.</t>
        <figure anchor="fig_domain-name">
          <name>Domain Name Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
domain-name = tstr .regexp "([^.]+[.])*[^.]+"
]]></sourcecode>
        </figure>
      </section>
      <section anchor="sec_rr">
        <name>DNS Resource Records</name>
        <t>This document specifies the representation of both standard DNS resource records (RRs, see <xref target="RFC1035"/>)
and EDNS option pseudo-RRs (see <xref target="RFC6891"/>).
If for any reason, a resource record can not be represented in the given formats, they can be
represented in their binary wire-format form, as a byte string.</t>
        <t>Further special records, e.g., TSIG can be defined in follow-up specifications and are out of scope
of this document.</t>
        <t>The representation of a DNS resource records is defined in <xref target="fig_dns-rr"/>.</t>
        <figure anchor="fig_dns-rr">
          <name>DNS Resource Record Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-rr = rr / #6.141(opt-rr) / bstr
]]></sourcecode>
        </figure>
        <section anchor="standard-rrs">
          <name>Standard RRs</name>
          <t>Standard DNS resource records are encoded as CBOR arrays containing 2 to 5 entries in the following
order:</t>
          <ol spacing="normal" type="1"><li>
              <t>An optional name (as text string, see <xref target="sec_domain-names"/>),</t>
            </li>
            <li>
              <t>A TTL (as unsigned integer),</t>
            </li>
            <li>
              <t>An optional record type (as unsigned integer),</t>
            </li>
            <li>
              <t>An optional record class (as unsigned integer), and lastly</t>
            </li>
            <li>
              <t>A record data entry (as unsigned integer, negative integer, byte string, or text string).</t>
            </li>
          </ol>
          <t>If the first item of the resource record is a text string, it is its name.
If the name is elided, the name is derived from the question section of the message.
For responses, the question section is either taken from the query (see <xref target="sec_queries"/>) or provided
with the response see <xref target="sec_responses"/>.
The query may be derived from the context of the transfer protocol.</t>
          <t>If the record type is elided, the record type from the question is assumed.
If record class is elided, the record class from the question is assumed.
When a record class is required, the record type <bcp14>MUST</bcp14> also be provided.</t>
          <t>The byte format of the record data as a byte string follows the wire format as specified in Section
3.3 <xref target="RFC1035"/> (or other specifications of the respective record type).  Note that this format does
not include the RDLENGTH field from <xref target="RFC1035"/> as this value is encoded in the length field of the
CBOR byte string.</t>
          <t>If the record data represents a domain name (e.g., for CNAME or PTR records), the record data <bcp14>MAY</bcp14> be
represented as a text string as specified in <xref target="sec_domain-names"/>.
This can save 1 byte of data, because the byte representation of DNS names requires both an
additional byte to define the length of the first name component and well as a zero byte at the end
of the name.
With CBOR on the other hand only 1 byte is required to define type and length of the text string up
until a string length of 23 characters.</t>
          <t>There is an argument to be made for more structured formats of other record data representations
(e.g. MX or SOA), but these usually add more overhead. As such, those record data are to be
represented as a byte string.</t>
          <figure anchor="fig_dns-standard-rr">
            <name>DNS Standard Resource Record Definition</name>
            <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
rr = [
  ? name: domain-name,
  ttl: uint,
  ? type-spec,
  rdata: bstr / domain-name,
]
type-spec = (
  record-type: uint,
  ? record-class: uint,
)
]]></sourcecode>
          </figure>
        </section>
        <section anchor="sec_edns">
          <name>EDNS OPT Pseudo-RRs</name>
          <t>EDNS OPT Pseudo-RRs are represented as a CBOR array.
To distinguish them from normal standard RRs, they are marked with tag TBD141.</t>
          <t>Name and record type can be elided as they are always "." and OPT (41), respectively <xref target="RFC6891"/>.</t>
          <t>The UDP payload size may be the first element as an unsigned integer in the array but it can be
elided if it defaults to 512, the maximum allowable size for DNS over UDP <xref target="RFC6891"/>.</t>
          <t>The next element is an array of the options, which are represented two elements each, an unsigned
integer, the option code, followed by a byte string, the option data.
Multiple options alternate between unsigned integer and byte string within the array.</t>
          <t>After that, up to three unsigned integers are following.
The first being the extended flags as unsigned integer (implied to be 0 if elided),
the second the extended RCODE as an unsigned integer (implied to be 0 if elided), and
the third the EDNS version (implied to be 0 if elided).
They are dependent on each of their previous elements.
If the EDNS version is not elided, both extended flags and extended RCODE <bcp14>MUST</bcp14> not be elided.
If the RCODE is not elided the extended flags <bcp14>MUST</bcp14> not be elided.</t>
          <t>TBD: reverse extended flags to get MSB-defined DO into LSB?</t>
          <t>Note that future EDNS versions may require a different format than the one described above.</t>
          <figure anchor="fig_dns-opt-rr">
            <name>DNS OPT Resource Record Definition</name>
            <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
opt-rr = [
  ? udp-payload-size: uint .default 512,
  options: [* opt],
  ? opt-rcode-v-flags,
]
opt = (
  ocode: uint,
  odata: bstr,
)
opt-rcode-v-flags = (
  flags: uint .default 0,
  ? opt-rcode-v,
)
opt-rcode-v = (
  rcode: uint .default 0,
  ? version: uint .default 0,
)
]]></sourcecode>
          </figure>
        </section>
      </section>
      <section anchor="sec_queries">
        <name>DNS Queries</name>
        <t>DNS queries are encoded as CBOR arrays containing up to 5 entries in the following order:</t>
        <ol spacing="normal" type="1"><li>
            <t>An optional flag field (as unsigned integer),</t>
          </li>
          <li>
            <t>The question section (as array),</t>
          </li>
          <li>
            <t>An optional authority section (as array), and</t>
          </li>
          <li>
            <t>An optional additional section (as array)</t>
          </li>
        </ol>
        <t>If the first item of the query is an array, it is the question section, if it is an unsigned
integer, it is as flag field and maps to the header flags in <xref target="RFC1035"/> and the "DNS Header Flags"
IANA registry including the QR flag and the Opcode.
It <bcp14>MUST</bcp14> be lesser than 2^16.</t>
        <t>If the flags are elided, the value 0 is assumed.</t>
        <t>This specification assumes that the DNS messages are sent over a transfer protocol that can map the
queries to their responses, e.g., DNS over HTTPS <xref target="RFC8484"/> or DNS over CoAP <xref target="I-D.ietf-core-dns-over-coap"/>.
As a consequence, the DNS transaction ID is always elided and the value 0 is assumed.</t>
        <t>A question within the question section is encoded as a CBOR array containing up to 3 entries:</t>
        <ol spacing="normal" type="1"><li>
            <t>The queried name (as text string, see <xref target="sec_domain-names"/>),</t>
          </li>
          <li>
            <t>An optional record type (as unsigned integer), and</t>
          </li>
          <li>
            <t>An optional record class (as unsigned integer)</t>
          </li>
        </ol>
        <t>If the record type is elided, record type <tt>AAAA</tt> as specified in <xref target="RFC3596"/> is assumed.
If the record class is elided, record class <tt>IN</tt> as specified in <xref target="RFC1035"/> is assumed.
When a record class is required, the record type <bcp14>MUST</bcp14> also be provided.</t>
        <t>If more than one question is supposed to be in the question section, the next question just follows.
In this case, for every question but the record type <bcp14>MUST</bcp14> be included and it is not optional. This
way it is ensured that the parser can distinguish each question by looking up the name
first (TBD note: this is especially relevant once the name is split up in components).</t>
        <t>The remainder of the query is either empty or <bcp14>MUST</bcp14> consist of up to two arrays.
The first array, if present, encodes the authority section of the query as an array of DNS
resource records (see <xref target="sec_rr"/>)
The second array, if present, encodes the additional section of the query as an array of DNS
resource records (see <xref target="sec_rr"/>)</t>
        <t>The representation of a DNS query is defined in <xref target="fig_dns-query"/>.</t>
        <figure anchor="fig_dns-query">
          <name>DNS Query Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-query = [
  ? flags: uint .default 0x0000,
  question-section,
  ? extra-sections,
]
question-section = [
  * full-question,
  ? last-question,
]
full-question = (
  name: domain-name,
  type-spec,
)
last-question = (
  name: domain-name,
  ? type-spec,
)
extra-sections = (
  ? authority: [+ dns-rr],
  additional: [+ dns-rr],
)
]]></sourcecode>
        </figure>
      </section>
      <section anchor="sec_responses">
        <name>DNS Responses</name>
        <t>DNS responses are encoded as a CBOR array containing up to 7 entries.</t>
        <ol spacing="normal" type="1"><li>
            <t>An optional flag field (as unsigned integer),</t>
          </li>
          <li>
            <t>An optional question section (as array, encoded as described in <xref target="sec_queries"/>)</t>
          </li>
          <li>
            <t>The answer section (as array),</t>
          </li>
          <li>
            <t>An optional authority section (as array), and</t>
          </li>
          <li>
            <t>An optional additional section (as array)</t>
          </li>
        </ol>
        <t>As for queries, the DNS transaction ID is elided and implied to be 0.</t>
        <t>If the CBOR array is a response to a query for which the flags indicate that flags are set in the
response, they <bcp14>MUST</bcp14> be set accordingly and thus included in the response.
If the flags are not included, the flags are implied to be 0x8000 (everything unset except for the
QR flag).</t>
        <t>If the response includes only 1 array, this is the DNS answer section represented as an
array of one or more DNS Resource Records (see <xref target="sec_rr"/>).</t>
        <t>If the response includes more than 2 arrays, the first entry may be the question section, identified
by not being an array of arrays. If it is present, it is followed by the answer section. The
question section is encoded as specified in <xref target="sec_queries"/>.</t>
        <t>If the answer section is followed by 1 additional array, it is the additional section (TBD:
back choice to favor additional section by empirical data). Like the answer section, the additional
sections is represented as an array of one or more DNS Resource Records (see <xref target="sec_rr"/>).</t>
        <t>If the answer section is followed by 2 additional arrays, the first is the authority section, and
the second the additional section (TBD: back choice to favor additional section by empirical data).
The authority section is also represented as an array of one or more DNS Resource Records (see
<xref target="sec_rr"/>).</t>
        <figure anchor="fig_dns-response">
          <name>DNS Response Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-response = [
  ? flags: uint .default 0x8000,
  ? question-section,
  answer-section: [+ dns-rr],
  ? extra-sections,
]
]]></sourcecode>
        </figure>
      </section>
    </section>
    <section anchor="name-and-address-compression-with-cbor-packed">
      <name>Name and Address Compression with CBOR-packed</name>
      <t>If both DNS server and client support CBOR-packed <xref target="I-D.ietf-cbor-packed"/>, it <bcp14>MAY</bcp14> be used for name and
address compression in DNS responses.</t>
      <section anchor="media-type-negotiation">
        <name>Media Type Negotiation</name>
        <t>A DNS client uses media type "application/dns+cbor;packed=1" to negotiate (see, e.g.,
<xref target="RFC9110"/> or <xref target="RFC7252"/>, Section 5.5.4) with the DNS server if the server supports packed
CBOR.
If it does, it <bcp14>MAY</bcp14> request the response to be in CBOR-packed (media type
"applicaton/dns+cbor;packed=1").
The server then <bcp14>SHOULD</bcp14> reply with the response in CBOR-packed.</t>
      </section>
      <section anchor="dns-representation-in-cbor-packed">
        <name>DNS Representation in CBOR-packed</name>
        <t>The representation of DNS responses in CBOR-packed has the same semantics as for tag TBD113
(<xref target="I-D.ietf-cbor-packed"/>, Section 3.1) with the rump being the compressed response.
The difference to <xref target="I-D.ietf-cbor-packed"/> is that tag TBD113 is <bcp14>OPTIONAL</bcp14>.</t>
        <t>Packed compression of queries is not specified, as apart from EDNS(0) (see <xref target="sec_edns"/>), they only
consist of one question most of the time.</t>
      </section>
      <section anchor="sec_pack-compression">
        <name>Compression</name>
        <t>How the compressor constructs the packing table, i.e., how the compression is applied, is out of
scope of this document. Several potential compression algorithms were evaluated in [TBD].</t>
        <!--
Discussion TBD:

- For queries, as they are only one question, i.e. at most one value of each at most,
  compression is not necessary.
- Address and name compression are mostly about affix compression
  (i.e. straight/inverse referencing)<br>
  ==> For occasions were value is the affix (e.g., "example.org" in ANY example in
  {{sec:response-examples}}) use shared item referencing to argument table to safe bytes (no extra
  shared item table, no, e.g., 216(""), just simple(0))
  - **Example:** Using Basic CBOR-packed ({{I-D.ietf-cbor-packed}}, section 3.1):
    - 130 bytes (Basic CBOR-packed)
    - 200 bytes (plain CBOR, see {{sec:response-examples}})
    - 194 bytes (wire-format)

    >     113(
    >       [
    >         ["_coap._udp.local", "example.org", 3600, 28],
    >         [h'20010db800000000000000000000', simple(1)],
    >         [
    >           [simple(1), 12, 1],
    >           [[simple(1), simple(0)]],
    >           [
    >             [simple(1), 2, 217("ns1.")],
    >             [simple(1), 2, 217("ns2.")]
    >           ],
    >           [
    >             [simple(0), simple(1), simple(3), 6(h'0001')],
    >             [simple(0), simple(1), simple(3), 6(h'0002')],
    >             [217("ns1."), simple(1), simple(3), 6(h'0035')],
    >             [217("ns2."), simple(1), simple(3), 6(h'3535')]
    >           ]
    >         ]
    >       ]
    >     )

    vs. application/dns+cbor;packed=1 (shared and argument table as one) 126&nbsp;bytes:

    >     [
    >       [
    >         h'20010db800000000000000000000',
    >         "_coap._udp.local", "example.org", 3600, 28
    >       ],
    >       [
    >         [simple(2), 12, 1],
    >         [[simple(3), simple(1)]],
    >         [
    >           [simple(2), 2, 218("ns1.")],
    >           [simple(2), 2, 218("ns2.")]
    >         ],
    >         [
    >           [simple(1), simple(3), simple(4), 6(h'0001')],
    >           [simple(1), simple(3), simple(4), 6(h'0002')],
    >           [218("ns1."), simple(3), simple(4), 6(h'0035')],
    >           [218("ns2."), simple(3), simple(4), 6(h'3535')]
    >         ]
    >       ]
    >     ] -->

</section>
    </section>
    <section anchor="comparison-to-wire-format">
      <name>Comparison to wire format</name>
      <t>TBD: Table comparing DNS wire-format, DNS+CBOR, and DNS+CBOR-packed</t>
    </section>
    <section anchor="implementation-status">
      <name>Implementation Status</name>
      <t>This section records the status of known implementations of the protocol
defined by this specification at the time of posting of this
Internet-Draft, and is based on a proposal described in
<xref target="RFC7942"/>.  The description of implementations in this
section is intended to assist the IETF in its decision processes in
progressing drafts to RFCs.  Please note that the listing of any individual
implementation here does not imply endorsement by the IETF.  Furthermore,
no effort has been spent to verify the information presented here that was
supplied by IETF contributors.  This is not intended as, and must not be
construed to be, a catalog of available implementations or their features.
Readers are advised to note that other implementations may exist.</t>
      <t>According to <xref target="RFC7942"/>, "this will allow reviewers and
working groups to assign due consideration to documents that have the
benefit of running code, which may serve as evidence of valuable
experimentation and feedback that have made the implemented protocols more
mature.  It is up to the individual working groups to use this information
as they see fit".</t>
      <section anchor="python-decoderencoder">
        <name>Python decoder/encoder</name>
        <t>The authors of this document provide a <eref target="https://github.com/netd-tud/cbor4dns">decoder/encoder
implementation</eref> of both the unpacked and packed format
specified in this document in Python.</t>
        <dl>
          <dt>Level of maturity:</dt>
          <dd>
            <t>prototype</t>
          </dd>
          <dt>Version compability:</dt>
          <dd>
            <t>draft-lenders-dns-cbor-05</t>
          </dd>
          <dt>License:</dt>
          <dd>
            <t>MIT</t>
          </dd>
          <dt>Contact information:</dt>
          <dd>
            <t><tt>Martine Lenders &lt;martine.lenders@tu-dresden.de&gt;</tt></t>
          </dd>
          <dt>Last update of this information:</dt>
          <dd>
            <t>October 2023</t>
          </dd>
        </dl>
      </section>
      <section anchor="embedded-decoderencoder">
        <name>Embedded decoder/encoder</name>
        <t>The authors of this document provide a <eref target="https://github.com/RIOT-OS/RIOT/pull/19989">decoder/encoder
implementation</eref> of the unpacked format specified in this
document for the RIOT operating system. It can only encode queries and decode responses.</t>
        <dl>
          <dt>Level of maturity:</dt>
          <dd>
            <t>prototype</t>
          </dd>
          <dt>Version compability:</dt>
          <dd>
            <t>draft-lenders-dns-cbor-05</t>
          </dd>
          <dt>License:</dt>
          <dd>
            <t>MIT</t>
          </dd>
          <dt>Contact information:</dt>
          <dd>
            <t><tt>Martine Lenders &lt;martine.lenders@tu-dresden.de&gt;</tt></t>
          </dd>
          <dt>Last update of this information:</dt>
          <dd>
            <t>October 2023</t>
          </dd>
        </dl>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>TODO Security</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <section anchor="media-type">
        <name>Media Type Registration</name>
        <t>This document registers a media type for the serialization format of DNS messages in CBOR. It
follows the procedures specified in <xref target="RFC6838"/>.</t>
        <section anchor="applicationdnscbor">
          <name>"application/dns+cbor"</name>
          <t>Type name: application</t>
          <t>Subtype name: dns+cbor</t>
          <t>Required parameters: None</t>
          <t>Optional parameters: packed</t>
          <t>Encoding considerations: Must be encoded as using <xref target="RFC8949"/>. See [TBD-this-spec] for details.</t>
          <t>Security considerations: See <xref target="security-considerations"/> of this draft</t>
          <t>Interoperability considerations: TBD</t>
          <t>Published specification: [TBD-this-spec]</t>
          <t>Applications that use this media type: TBD DNS over X systems</t>
          <t>Fragment Identifier Considerations: TBD</t>
          <t>Additional information:</t>
          <t>   Deprecated alias names for this type: N/A</t>
          <t>   Magic number(s): N/A</t>
          <t>   File extension(s): dnsc</t>
          <t>   Macintosh file type code(s): none</t>
          <t>Person &amp; email address to contact for further information:
   Martine S. Lenders <eref target="mailto:m.lenders@fu-berlin.de">m.lenders@fu-berlin.de</eref></t>
          <t>Intended usage: COMMON</t>
          <t>Restrictions on Usage: None?</t>
          <t>Author: Martine S. Lenders <eref target="mailto:m.lenders@fu-berlin.de">m.lenders@fu-berlin.de</eref></t>
          <t>Change controller: Martine S. Lenders <eref target="mailto:m.lenders@fu-berlin.de">m.lenders@fu-berlin.de</eref></t>
          <t>Provisional registrations? No</t>
        </section>
      </section>
      <section anchor="coap-content-format-registration">
        <name>CoAP Content-Format Registration</name>
        <t>IANA is requested to assign CoAP Content-Format ID for the new DNS message media
types in the "CoAP Content-Formats"
sub-registry, within the "CoRE Parameters" registry <xref target="RFC7252"/>, corresponding the
"application/dns+cbor" media type specified in <xref target="media-type"/>:</t>
        <section anchor="cf-app-d-c">
          <name>"application/dns+cbor"</name>
          <t>Media-Type: application/dns+cbor</t>
          <t>Encoding: -</t>
          <t>Id: TBD</t>
          <t>Reference: [TBD-this-spec]</t>
        </section>
        <section anchor="applicationdnscborpacked1">
          <name>"application/dns+cbor;packed=1"</name>
          <t>Media-Type: application/dns+cbor;packed=1</t>
          <t>Encoding: -</t>
          <t>Id: TBD</t>
          <t>Reference: [TBD-this-spec]</t>
        </section>
      </section>
      <section anchor="cbor-tags-registry">
        <name>CBOR Tags Registry</name>
        <t>In the registry "<xref section="CBOR Tags" relative="#cbor-tags" sectionFormat="bare" target="IANA.cbor-tags"/>" <xref target="IANA.cbor-tags"/>,
IANA is requested to allocate the tags defined in <xref target="tab-tag-values"/>.</t>
        <table anchor="tab-tag-values">
          <name>Values for Tag Numbers</name>
          <thead>
            <tr>
              <th align="right">Tag</th>
              <th align="left">Data Item</th>
              <th align="left">Semantics</th>
              <th align="left">Reference</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="right">TBD141</td>
              <td align="left">array</td>
              <td align="left">CBOR EDNS option record</td>
              <td align="left">draft-lenders-dns-cbor</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
  </middle>
  <back>
    <references>
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="RFC1035">
          <front>
            <title>Domain names - implementation and specification</title>
            <author fullname="P. Mockapetris" initials="P." surname="Mockapetris"/>
            <date month="November" year="1987"/>
            <abstract>
              <t>This RFC is the revised specification of the protocol and format used in the implementation of the Domain Name System. It obsoletes RFC-883. This memo documents the details of the domain name client - server communication.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="13"/>
          <seriesInfo name="RFC" value="1035"/>
          <seriesInfo name="DOI" value="10.17487/RFC1035"/>
        </reference>
        <reference anchor="RFC3596">
          <front>
            <title>DNS Extensions to Support IP Version 6</title>
            <author fullname="S. Thomson" initials="S." surname="Thomson"/>
            <author fullname="C. Huitema" initials="C." surname="Huitema"/>
            <author fullname="V. Ksinant" initials="V." surname="Ksinant"/>
            <author fullname="M. Souissi" initials="M." surname="Souissi"/>
            <date month="October" year="2003"/>
            <abstract>
              <t>This document defines the changes that need to be made to the Domain Name System (DNS) to support hosts running IP version 6 (IPv6). The changes include a resource record type to store an IPv6 address, a domain to support lookups based on an IPv6 address, and updated definitions of existing query types that return Internet addresses as part of additional section processing. The extensions are designed to be compatible with existing applications and, in particular, DNS implementations themselves. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="88"/>
          <seriesInfo name="RFC" value="3596"/>
          <seriesInfo name="DOI" value="10.17487/RFC3596"/>
        </reference>
        <reference anchor="RFC6891">
          <front>
            <title>Extension Mechanisms for DNS (EDNS(0))</title>
            <author fullname="J. Damas" initials="J." surname="Damas"/>
            <author fullname="M. Graff" initials="M." surname="Graff"/>
            <author fullname="P. Vixie" initials="P." surname="Vixie"/>
            <date month="April" year="2013"/>
            <abstract>
              <t>The Domain Name System's wire protocol includes a number of fixed fields whose range has been or soon will be exhausted and does not allow requestors to advertise their capabilities to responders. This document describes backward-compatible mechanisms for allowing the protocol to grow.</t>
              <t>This document updates the Extension Mechanisms for DNS (EDNS(0)) specification (and obsoletes RFC 2671) based on feedback from deployment experience in several implementations. It also obsoletes RFC 2673 ("Binary Labels in the Domain Name System") and adds considerations on the use of extended labels in the DNS.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="75"/>
          <seriesInfo name="RFC" value="6891"/>
          <seriesInfo name="DOI" value="10.17487/RFC6891"/>
        </reference>
        <reference anchor="RFC7252">
          <front>
            <title>The Constrained Application Protocol (CoAP)</title>
            <author fullname="Z. Shelby" initials="Z." surname="Shelby"/>
            <author fullname="K. Hartke" initials="K." surname="Hartke"/>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <date month="June" year="2014"/>
            <abstract>
              <t>The Constrained Application Protocol (CoAP) is a specialized web transfer protocol for use with constrained nodes and constrained (e.g., low-power, lossy) networks. The nodes often have 8-bit microcontrollers with small amounts of ROM and RAM, while constrained networks such as IPv6 over Low-Power Wireless Personal Area Networks (6LoWPANs) often have high packet error rates and a typical throughput of 10s of kbit/s. The protocol is designed for machine- to-machine (M2M) applications such as smart energy and building automation.</t>
              <t>CoAP provides a request/response interaction model between application endpoints, supports built-in discovery of services and resources, and includes key concepts of the Web such as URIs and Internet media types. CoAP is designed to easily interface with HTTP for integration with the Web while meeting specialized requirements such as multicast support, very low overhead, and simplicity for constrained environments.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7252"/>
          <seriesInfo name="DOI" value="10.17487/RFC7252"/>
        </reference>
        <reference anchor="RFC8610">
          <front>
            <title>Concise Data Definition Language (CDDL): A Notational Convention to Express Concise Binary Object Representation (CBOR) and JSON Data Structures</title>
            <author fullname="H. Birkholz" initials="H." surname="Birkholz"/>
            <author fullname="C. Vigano" initials="C." surname="Vigano"/>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <date month="June" year="2019"/>
            <abstract>
              <t>This document proposes a notational convention to express Concise Binary Object Representation (CBOR) data structures (RFC 7049). Its main goal is to provide an easy and unambiguous way to express structures for protocol messages and data formats that use CBOR or JSON.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8610"/>
          <seriesInfo name="DOI" value="10.17487/RFC8610"/>
        </reference>
        <reference anchor="RFC8949">
          <front>
            <title>Concise Binary Object Representation (CBOR)</title>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <date month="December" year="2020"/>
            <abstract>
              <t>The Concise Binary Object Representation (CBOR) is a data format whose design goals include the possibility of extremely small code size, fairly small message size, and extensibility without the need for version negotiation. These design goals make it different from earlier binary serializations such as ASN.1 and MessagePack.</t>
              <t>This document obsoletes RFC 7049, providing editorial improvements, new details, and errata fixes while keeping full compatibility with the interchange format of RFC 7049. It does not create a new version of the format.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="94"/>
          <seriesInfo name="RFC" value="8949"/>
          <seriesInfo name="DOI" value="10.17487/RFC8949"/>
        </reference>
        <reference anchor="I-D.ietf-cbor-packed">
          <front>
            <title>Packed CBOR</title>
            <author fullname="Carsten Bormann" initials="C." surname="Bormann">
              <organization>Universität Bremen TZI</organization>
            </author>
            <date day="10" month="July" year="2023"/>
            <abstract>
              <t>   The Concise Binary Object Representation (CBOR, RFC 8949 == STD 94)
   is a data format whose design goals include the possibility of
   extremely small code size, fairly small message size, and
   extensibility without the need for version negotiation.

   CBOR does not provide any forms of data compression.  CBOR data
   items, in particular when generated from legacy data models, often
   allow considerable gains in compactness when applying data
   compression.  While traditional data compression techniques such as
   DEFLATE (RFC 1951) can work well for CBOR encoded data items, their
   disadvantage is that the receiver needs to decompress the compressed
   form to make use of the data.

   This specification describes Packed CBOR, a simple transformation of
   a CBOR data item into another CBOR data item that is almost as easy
   to consume as the original CBOR data item.  A separate decompression
   step is therefore often not required at the receiver.


   // The present version (-09) provides two table setup tags (common,
   // split setup) and discusses behavior in case of references to
   // unpopulated table entries during unpacking.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-cbor-packed-09"/>
        </reference>
        <reference anchor="IANA.cbor-tags" target="http://www.iana.org/assignments/cbor-tags">
          <front>
            <title>Concise Binary Object Representation (CBOR) Tags</title>
            <author>
              <organization>IANA</organization>
            </author>
          </front>
        </reference>
        <reference anchor="RFC2119">
          <front>
            <title>Key words for use in RFCs to Indicate Requirement Levels</title>
            <author fullname="S. Bradner" initials="S." surname="Bradner"/>
            <date month="March" year="1997"/>
            <abstract>
              <t>In many standards track documents several words are used to signify the requirements in the specification. These words are often capitalized. This document defines these words as they should be interpreted in IETF documents. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="2119"/>
          <seriesInfo name="DOI" value="10.17487/RFC2119"/>
        </reference>
        <reference anchor="RFC8174">
          <front>
            <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
            <author fullname="B. Leiba" initials="B." surname="Leiba"/>
            <date month="May" year="2017"/>
            <abstract>
              <t>RFC 2119 specifies common key words that may be used in protocol specifications. This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the defined special meanings.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="8174"/>
          <seriesInfo name="DOI" value="10.17487/RFC8174"/>
        </reference>
        <reference anchor="RFC5890">
          <front>
            <title>Internationalized Domain Names for Applications (IDNA): Definitions and Document Framework</title>
            <author fullname="J. Klensin" initials="J." surname="Klensin"/>
            <date month="August" year="2010"/>
            <abstract>
              <t>This document is one of a collection that, together, describe the protocol and usage context for a revision of Internationalized Domain Names for Applications (IDNA), superseding the earlier version. It describes the document collection and provides definitions and other material that are common to the set. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5890"/>
          <seriesInfo name="DOI" value="10.17487/RFC5890"/>
        </reference>
        <reference anchor="RFC6838">
          <front>
            <title>Media Type Specifications and Registration Procedures</title>
            <author fullname="N. Freed" initials="N." surname="Freed"/>
            <author fullname="J. Klensin" initials="J." surname="Klensin"/>
            <author fullname="T. Hansen" initials="T." surname="Hansen"/>
            <date month="January" year="2013"/>
            <abstract>
              <t>This document defines procedures for the specification and registration of media types for use in HTTP, MIME, and other Internet protocols. This memo documents an Internet Best Current Practice.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="13"/>
          <seriesInfo name="RFC" value="6838"/>
          <seriesInfo name="DOI" value="10.17487/RFC6838"/>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="RFC4944">
          <front>
            <title>Transmission of IPv6 Packets over IEEE 802.15.4 Networks</title>
            <author fullname="G. Montenegro" initials="G." surname="Montenegro"/>
            <author fullname="N. Kushalnagar" initials="N." surname="Kushalnagar"/>
            <author fullname="J. Hui" initials="J." surname="Hui"/>
            <author fullname="D. Culler" initials="D." surname="Culler"/>
            <date month="September" year="2007"/>
            <abstract>
              <t>This document describes the frame format for transmission of IPv6 packets and the method of forming IPv6 link-local addresses and statelessly autoconfigured addresses on IEEE 802.15.4 networks. Additional specifications include a simple header compression scheme using shared context and provisions for packet delivery in IEEE 802.15.4 meshes. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="4944"/>
          <seriesInfo name="DOI" value="10.17487/RFC4944"/>
        </reference>
        <reference anchor="RFC6282">
          <front>
            <title>Compression Format for IPv6 Datagrams over IEEE 802.15.4-Based Networks</title>
            <author fullname="J. Hui" initials="J." role="editor" surname="Hui"/>
            <author fullname="P. Thubert" initials="P." surname="Thubert"/>
            <date month="September" year="2011"/>
            <abstract>
              <t>This document updates RFC 4944, "Transmission of IPv6 Packets over IEEE 802.15.4 Networks". This document specifies an IPv6 header compression format for IPv6 packet delivery in Low Power Wireless Personal Area Networks (6LoWPANs). The compression format relies on shared context to allow compression of arbitrary prefixes. How the information is maintained in that shared context is out of scope. This document specifies compression of multicast addresses and a framework for compressing next headers. UDP header compression is specified within this framework. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6282"/>
          <seriesInfo name="DOI" value="10.17487/RFC6282"/>
        </reference>
        <reference anchor="RFC7228">
          <front>
            <title>Terminology for Constrained-Node Networks</title>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <author fullname="M. Ersue" initials="M." surname="Ersue"/>
            <author fullname="A. Keranen" initials="A." surname="Keranen"/>
            <date month="May" year="2014"/>
            <abstract>
              <t>The Internet Protocol Suite is increasingly used on small devices with severe constraints on power, memory, and processing resources, creating constrained-node networks. This document provides a number of basic terms that have been useful in the standardization work for constrained-node networks.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7228"/>
          <seriesInfo name="DOI" value="10.17487/RFC7228"/>
        </reference>
        <reference anchor="RFC7942">
          <front>
            <title>Improving Awareness of Running Code: The Implementation Status Section</title>
            <author fullname="Y. Sheffer" initials="Y." surname="Sheffer"/>
            <author fullname="A. Farrel" initials="A." surname="Farrel"/>
            <date month="July" year="2016"/>
            <abstract>
              <t>This document describes a simple process that allows authors of Internet-Drafts to record the status of known implementations by including an Implementation Status section. This will allow reviewers and working groups to assign due consideration to documents that have the benefit of running code, which may serve as evidence of valuable experimentation and feedback that have made the implemented protocols more mature.</t>
              <t>This process is not mandatory. Authors of Internet-Drafts are encouraged to consider using the process for their documents, and working groups are invited to think about applying the process to all of their protocol specifications. This document obsoletes RFC 6982, advancing it to a Best Current Practice.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="205"/>
          <seriesInfo name="RFC" value="7942"/>
          <seriesInfo name="DOI" value="10.17487/RFC7942"/>
        </reference>
        <reference anchor="RFC8484">
          <front>
            <title>DNS Queries over HTTPS (DoH)</title>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <author fullname="P. McManus" initials="P." surname="McManus"/>
            <date month="October" year="2018"/>
            <abstract>
              <t>This document defines a protocol for sending DNS queries and getting DNS responses over HTTPS. Each DNS query-response pair is mapped into an HTTP exchange.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8484"/>
          <seriesInfo name="DOI" value="10.17487/RFC8484"/>
        </reference>
        <reference anchor="RFC8724">
          <front>
            <title>SCHC: Generic Framework for Static Context Header Compression and Fragmentation</title>
            <author fullname="A. Minaburo" initials="A." surname="Minaburo"/>
            <author fullname="L. Toutain" initials="L." surname="Toutain"/>
            <author fullname="C. Gomez" initials="C." surname="Gomez"/>
            <author fullname="D. Barthel" initials="D." surname="Barthel"/>
            <author fullname="JC. Zuniga" initials="JC." surname="Zuniga"/>
            <date month="April" year="2020"/>
            <abstract>
              <t>This document defines the Static Context Header Compression and fragmentation (SCHC) framework, which provides both a header compression mechanism and an optional fragmentation mechanism. SCHC has been designed with Low-Power Wide Area Networks (LPWANs) in mind.</t>
              <t>SCHC compression is based on a common static context stored both in the LPWAN device and in the network infrastructure side. This document defines a generic header compression mechanism and its application to compress IPv6/UDP headers.</t>
              <t>This document also specifies an optional fragmentation and reassembly mechanism. It can be used to support the IPv6 MTU requirement over the LPWAN technologies. Fragmentation is needed for IPv6 datagrams that, after SCHC compression or when such compression was not possible, still exceed the Layer 2 maximum payload size.</t>
              <t>The SCHC header compression and fragmentation mechanisms are independent of the specific LPWAN technology over which they are used. This document defines generic functionalities and offers flexibility with regard to parameter settings and mechanism choices. This document standardizes the exchange over the LPWAN between two SCHC entities. Settings and choices specific to a technology or a product are expected to be grouped into profiles, which are specified in other documents. Data models for the context and profiles are out of scope.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8724"/>
          <seriesInfo name="DOI" value="10.17487/RFC8724"/>
        </reference>
        <reference anchor="RFC8824">
          <front>
            <title>Static Context Header Compression (SCHC) for the Constrained Application Protocol (CoAP)</title>
            <author fullname="A. Minaburo" initials="A." surname="Minaburo"/>
            <author fullname="L. Toutain" initials="L." surname="Toutain"/>
            <author fullname="R. Andreasen" initials="R." surname="Andreasen"/>
            <date month="June" year="2021"/>
            <abstract>
              <t>This document defines how to compress Constrained Application Protocol (CoAP) headers using the Static Context Header Compression and fragmentation (SCHC) framework. SCHC defines a header compression mechanism adapted for Constrained Devices. SCHC uses a static description of the header to reduce the header's redundancy and size. While RFC 8724 describes the SCHC compression and fragmentation framework, and its application for IPv6/UDP headers, this document applies SCHC to CoAP headers. The CoAP header structure differs from IPv6 and UDP, since CoAP uses a flexible header with a variable number of options, themselves of variable length. The CoAP message format is asymmetric: the request messages have a header format different from the format in the response messages. This specification gives guidance on applying SCHC to flexible headers and how to leverage the asymmetry for more efficient compression Rules.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8824"/>
          <seriesInfo name="DOI" value="10.17487/RFC8824"/>
        </reference>
        <reference anchor="RFC9110">
          <front>
            <title>HTTP Semantics</title>
            <author fullname="R. Fielding" initials="R." role="editor" surname="Fielding"/>
            <author fullname="M. Nottingham" initials="M." role="editor" surname="Nottingham"/>
            <author fullname="J. Reschke" initials="J." role="editor" surname="Reschke"/>
            <date month="June" year="2022"/>
            <abstract>
              <t>The Hypertext Transfer Protocol (HTTP) is a stateless application-level protocol for distributed, collaborative, hypertext information systems. This document describes the overall architecture of HTTP, establishes common terminology, and defines aspects of the protocol that are shared by all versions. In this definition are core protocol elements, extensibility mechanisms, and the "http" and "https" Uniform Resource Identifier (URI) schemes.</t>
              <t>This document updates RFC 3864 and obsoletes RFCs 2818, 7231, 7232, 7233, 7235, 7538, 7615, 7694, and portions of 7230.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="97"/>
          <seriesInfo name="RFC" value="9110"/>
          <seriesInfo name="DOI" value="10.17487/RFC9110"/>
        </reference>
        <reference anchor="I-D.ietf-core-dns-over-coap">
          <front>
            <title>DNS over CoAP (DoC)</title>
            <author fullname="Martine Sophie Lenders" initials="M. S." surname="Lenders">
              <organization>TUD Dresden University of Technology</organization>
            </author>
            <author fullname="Christian Amsüss" initials="C." surname="Amsüss">
         </author>
            <author fullname="Cenk Gündoğan" initials="C." surname="Gündoğan">
              <organization>Huawei Technologies</organization>
            </author>
            <author fullname="Thomas C. Schmidt" initials="T. C." surname="Schmidt">
              <organization>HAW Hamburg</organization>
            </author>
            <author fullname="Matthias Wählisch" initials="M." surname="Wählisch">
              <organization>TUD Dresden University of Technology &amp; Barkhausen Institut</organization>
            </author>
            <date day="17" month="November" year="2023"/>
            <abstract>
              <t>   This document defines a protocol for sending DNS messages over the
   Constrained Application Protocol (CoAP).  These CoAP messages are
   protected by DTLS-Secured CoAP (CoAPS) or Object Security for
   Constrained RESTful Environments (OSCORE) to provide encrypted DNS
   message exchange for constrained devices in the Internet of Things
   (IoT).

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-core-dns-over-coap-05"/>
        </reference>
      </references>
    </references>
    <?line 640?>

<section anchor="examples">
      <name>Examples</name>
      <section anchor="sec_query-examples">
        <name>DNS Queries</name>
        <t>A DNS query of the record <tt>AAAA</tt> in class <tt>IN</tt> for name "example.org" is
represented in CBOR extended diagnostic notation (EDN) (see Section 8 in
<xref target="RFC8949"/> and Appendix G in <xref target="RFC8610"/>) as follows:</t>
        <artwork><![CDATA[
[["example.org"]]
]]></artwork>
        <t>A query of an <tt>A</tt> record for the same name is represented as</t>
        <artwork><![CDATA[
[["example.org", 1]]
]]></artwork>
        <t>A query of <tt>ANY</tt> record for that name is represented as</t>
        <artwork><![CDATA[
[["example.org", 255, 255]]
]]></artwork>
      </section>
      <section anchor="sec_response-examples">
        <name>DNS Responses</name>
        <t>The responses to the examples provided in <xref target="sec_query-examples"/> are shown
below. We use the CBOR extended diagnostic notation (EDN) (see Section 8 in
<xref target="RFC8949"/> and Appendix G in <xref target="RFC8610"/>).</t>
        <t>To represent an <tt>AAAA</tt> record with TTL 300 seconds for the IPv6 address 2001:db8::1, a minimal
response to <tt>["example.org"]</tt> could be</t>
        <artwork><![CDATA[
[[[300, h'20010db8000000000000000000000001']]]
]]></artwork>
        <t>In this case, the name is derived from the query.</t>
        <t>If the name or the context is required, the following response would also
be valid:</t>
        <artwork><![CDATA[
[[["example.org", 300, h'20010db8000000000000000000000001']]]
]]></artwork>
        <t>If the query can not be mapped to the response for some reason, a response
would look like:</t>
        <artwork><![CDATA[
[["example.org"], [[300, h'20010db8000000000000000000000001']]]
]]></artwork>
        <t>To represent a minimal response of an <tt>A</tt> record with TTL 3600 seconds for the IPv4 address
192.0.2.1, a minimal response to <tt>["example.org", 1]</tt> could be</t>
        <artwork><![CDATA[
[[300, h'c0000201']]
]]></artwork>
        <t>Note that here also the 1 of record type <tt>A</tt> can be elided, as this record
type is specified in the question section.</t>
        <t>Lastly, a response to <tt>["example.org", 255, 255]</tt> could be</t>
        <artwork><![CDATA[
[
  ["example.org", 12, 1],
  [[3600, "_coap._udp.local"]],
  [
    [3600, 2, "ns1.example.org"],
    [3600, 2, "ns2.example.org"]
  ],
  [
    [
      "_coap._udp.local", 3600, 28,
      h'20010db8000000000000000000000001'
    ],
    [
      "_coap._udp.local", 3600, 28,
      h'20010db8000000000000000000000002'
    ],
    [
      "ns1.example.org", 3600, 28,
      h'20010db8000000000000000000000035'
    ],
    [
      "ns2.example.org", 3600, 28,
      h'20010db8000000000000000000003535'
    ]
  ]
]
]]></artwork>
        <t>This one advertises two local CoAP servers (identified by service name <tt>_coap._udp.local</tt>) at
2001:db8::1 and 2001:db8::2 and two nameservers for the example.org domain, ns1.example.org at
2001:db8::35 and ns2.example.org at 2001.db8::3535. Each of the transmitted records has a TTL of
3600 seconds.</t>
      </section>
    </section>
    <section anchor="change-log">
      <name>Change Log</name>
      <section anchor="since-draft-lenders-dns-cbor-05">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-05">draft-lenders-dns-cbor-05</eref></name>
        <ul spacing="normal">
          <li>
            <t>Fix <xref target="cf-app-d-c"/> title</t>
          </li>
          <li>
            <t>Amend for capability to carry more than one question</t>
          </li>
          <li>
            <t>Hint at future of name compression in later draft versions</t>
          </li>
          <li>
            <t>Use canonical name for CBOR-packed</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-04">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-04">draft-lenders-dns-cbor-04</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add Implementation Status section</t>
          </li>
          <li>
            <t>Remove int as representation for rdata</t>
          </li>
          <li>
            <t>Add note on representation of more structured rdata</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-03">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-03">draft-lenders-dns-cbor-03</eref></name>
        <ul spacing="normal">
          <li>
            <t>Provide format description for EDNS OPT Pseudo-RRs</t>
          </li>
          <li>
            <t>Simplify CDDL to more idiomatic style</t>
          </li>
          <li>
            <t>Remove DNS transaction IDs</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-02">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-02">draft-lenders-dns-cbor-02</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add Discussion section and note on compression</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-01">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-01">draft-lenders-dns-cbor-01</eref></name>
        <ul spacing="normal">
          <li>
            <t>Use MIME type parameter for packed instead of own MIME type</t>
          </li>
          <li>
            <t>Update definitions to accommodate for TID and flags, as well as more sections in query</t>
          </li>
          <li>
            <t>Clarify fallback to wire-format</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-00">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-00">draft-lenders-dns-cbor-00</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add support for DNS transaction IDs</t>
          </li>
          <li>
            <t>Name and Address compression utilizing CBOR-packed</t>
          </li>
          <li>
            <t>Minor fixes to CBOR EDN and CDDL</t>
          </li>
        </ul>
      </section>
    </section>
    <section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>TODO acknowledge.</t>
      <ul spacing="normal">
        <li>
          <t>Carsten Bormann</t>
        </li>
      </ul>
    </section>
  </back>
  <!-- ##markdown-source:
H4sIAAAAAAAAA90923bctrXv+Ap0vFYjOUNKM7pEmsZxZEmOtZZ1iTRumuOq
NYfEzLDmkFNeJCuO+i3noV9y+mNnXwASvIxkxyvn4ejBFklgY2Nj37EBOY4j
8jCP1Ej2DuRhEvthpuSLMPbSO3k++Yfyc3mplqnKVJx7eZjEcu3wxfnlukym
8ujsSp6qLPNmKusJbzJJ1Q3ACeLsa3+SpD3he7maJendSGZ5IESQ+LG3gKGC
1JvmTqTiQKWZA+0dbO9s7oq4WExUOhIB9BwJP4lh3KzIRjJPCyUA+pbIiski
zDJAJb9bArCT4/FL4aXKwyksl1HoE56A0W2Svp+lSbEcScRZvFd38CoYCenI
kzhXaaxy5whxwTfUBP6HWYkbFRcwvpR2dyl5wJ8AbBjP5A/4Dd4uvDAaSZzB
96HKp26SzuCtl/pzwGie58tstLGBjfBVeKNc02oDX2xM0uQ2UxvYf6OHQ4b5
vJhAVy9OncliMnWW4U2Sb3QTDXtEQKwstwar93QZohsmK2CseO3O80XUE8Ir
8nmSEtXktIgiXsNTL83DWMmrZDkPlXzNnQEbKWFqIzl+cySPgG8CFcs3MUw7
zcL8DtlmrPx5nETJ7I5aG74ZvzHt6XWWp0rBpF6paDFPovwXeOHKwSZ99AHU
qNbcTwJA6sjZHGzu7us3RZwj7/2g0oUX82CKF2vByLt6yt/nhRMwMDdQjYke
emmWwyReJAgmNjP04vAXYrRRNb3//DuXL1K1gNbj/zqxB/S9SfJ9/kvIzFGD
P54nCy+Th6688ueLMMg7Rnh18JN85S0mBbFWCTV3M+7y/dy7debcwMzALFOe
z0OA/9N//j2PQmj/eUsk/yhfeOn7uVeAJILUZKAtinzFwj3Q+PddTvfWUzy7
xlKKGFcth7mhNF++PBxsbu2AAoozftza2d8dSQ9++Hl3b38wkqr8/s1wZwir
l3hLft7bHWzCcxBE+nl/e59lH55PnCOSbdZmS89/rwL+qB+wzcHZgUuvcm+G
eg3+FSKMpw08t/e3t0dyN0pul16scRvuAS7hcu4b3IZ7iBuQGaABVQzO+9vY
brGMnAx0dpE5Gahx4CON8vYeQA6SuX78ZgiPQDkNdW8Pn3HGTvVyf4DTRvUC
sID6eehntQknqSK9kQATOdgZR/CFEI7jAKMAhp6fCzGehxl+KEBEcpktlR9O
Q5VJDwZcoJXJVCBB93uS6WGszEJbGVlkoHlFPlefZqs+fqS1uL93YWgll2m4
wMbLIl0m0BeQyRP5XqllfZRs4UWRDGNNXA9URSDBWKBByVw9K5C7IAIOe4K2
JE2CgmksTrq7ES7WWt3f9yXOIwrj96DB71QKWulOAvZ5GsJM8NvSu4sSL5BZ
+ItCVEUSR3dArKm6lfMiBj4PMjm5A+3vSnkc++ndMochcS4AJ4kKxKgvs8Kf
S1AB+B4XSL4ajy+u5NpR8mod0QJeuL8HlSDKBofJwQV+P9TffcQW0YsUoAM0
s8hlsJvDcqkPvgIEclzmKFyEeV8qsKXydg5yjRyJujFH4zkHQDCQWXZcLIPm
7uvkp4uDM3ly8eoQh0eOJ/zk1SG/QcYEjASRVDMqrrE4iMBUFTMAEyRL4gCi
bNaCDT21bHVBBrabAnLT1JstSl4C8iO2sAC3YE81j5yO32T9RsMMUIgCOVHS
u0nCAOixgpP60MZHXSnqAGCYCTWkgeYhzIf0Ry6jJMvkoojyEPwcIrqid7D8
BzzJviVLyI5ajuC/OovDAsWwVCpwf4NUNqHB8DXg4I1JFaMOx7mLz3ErS4mV
XhzAZIIgxM9A67u+LOJY+TgIQAF2BfYHIQBtJEv9CYBgLmCCgY0DQGucgMpQ
RKekyGE6ClUK8aeep697xRLEAQeF/w/7Iq/RxIuypEaYUxWEnhyDP2g4mWii
IXioncBnyJ2XWo0xM3KbQxeVxhiUQKjdIIFzJ+8yk2tFnIWzmCgH3rNK+yTh
aEBBbkBnqA95+eClqXcHfKRy310nshe4VsDogZqGDERYSlCMXxzRUmUqRTlH
ZH3gpDhH4aEv/ywUUDfESRoBJ9HG9zh3bGOTe5omC4AjiyWaeG9RaR8YgJgL
AMBcZa9LBHo4UhvntrLUkMCFl+jDZ7J3+uZq3Ovz//LsnH6/PP7xzcnl8RH+
fvXq4PXr8hehW1y9On/z+qj6rep5eH56enx2xJ3hray9Er3Tg5/hC1Ksd34x
Pjk/O3jdQ1QbnAJrAPoRhB+XLwUWz2lyIlCZn4YTnt6Lw4v/+e/BNkzzD2Bd
h4PBPjA8P+wNvtmGB9SYPBrpfH4ENr4T3nKpvBShoALyvWWYA3v2kYCgeW5j
YMhUAbmevkXKXI/ktxN/Odj+Tr/ACddeGprVXhLN2m9anZmIHa86himpWXvf
oHQd34Ofa8+G7tbLb59HGIU4g73n3wmUKxKlum4BofKqwHDDxKfrwFLa+qPR
QzkGox6DixChFrVNHOkUDZJ5lYZh8UPlCytBb8JcLTRDg+R16BnkD9BAxOrQ
GAxqPMvnAMICyAIXJDJOUNdGYKhY01NbofvSxIwyS1Ld0CmW9RGBM2jZJ2io
AUIO3AT6BRw21I8nOYl6lgH3BjSuqJQAKUOW5iVG4oR8EGZowIswm0OPUkWQ
7sIOhDtiyzB8UA0w9AK5Fj0H8t1KgJM7agpaIc7Q4i7TJE/8JMJ5+fMk9BXr
cNYMkvvWzAY0nJBZEQmZlUzeqlLlG8NzhLbrqCSbfO3BBBDttcOjo9dsdMCZ
Iy3zr3/9i/17dGfN9J5hxODwjDbodzMFbC8+jrCHfDINZyPqls0kZVWe9eq2
lecBPlsChh1J+6PWqki5Sw0yQ9lGxHr34E1O+2Q2IOKBqXsZ+nMt3kQ+qegy
iRTrJcVMpY22MV+BUVrCoIUQp6BMJuBkoPLCnh7ABEVSG4kBgbVxZy47r34E
rBP61Oo2TKsmyHLCi26Rm2H5wdvOQsALLd8TMIEQtsXyDALUlsP+BGKVUUAN
HIxgM6CBbk+PxIO2LPJMQ3IlF6Qr38eoBdlEmsmvMc499cFDLxTDcFDmmVLy
SsdGQ3fLHWjTA2t4f79OiwIvTo7ODtidQYCspXf29jfRR0EzaVlkV4LBZ9dd
hxhaQC1aB/ZsUkUPvpcpJ6RkV4hBIClze70MUtoMtoXAs+EiT9SMKTFmRVTj
CowqQIa6Gfl8SQyvQG2+W3sqc5ja+rv1PgrnDbizPILtuKNxMo6bjnSBNjDp
Yol5vIAYmGUXhBwoafiEFQYx7KQII6Iv6Be/II8TvmNuTw4Ge4AuyxhEqkmR
+gp9S5rKs16ZrsLvKDKVBFczBgnGeUg3BZfqw1L21t7+zb3++q17vf6Ufuu1
BdnqrYXZZtxKneCYyNUgAyDChB784pOXwvycpvervewVSg01BITv4N+mVURH
sFMNe+3yMmMeLllWIEGPKYxjj3OZqSJIHGgp13RLxU1dUC0dmqUxCulvVC+T
LqmTsxCjO17MjP0TrfFFp4yyqiZV4VSxxKLPgmT5ubDgL4uUNBBRyovMtI36
GV+d/GCsi8Xrq6wg++UphQFI38xPlkoY82mW5QHx6lyCTjlD65C2bUmaAhPC
Pxvyya472B6swRLBy3V4gfmRTkMCzQ3rtbmrxYJP5JVhGFhwIa4eZB87SKs7
NBis5sDoKI5DNAg70DAnO6XXnamMqRgAhfl6MXDlQay5DhaLpGYNwNbCFebA
loa/X++D+pUHcjx+TZ2aIRB836rD19yJbseqHtudPchirehCPALfwUUSO4iP
7kOhL1LgrrNjH6KZGeXuVoRsqP0qMoDkoegRGcM0y8lnZDuhWuIXNgxMH1rj
yxC0MxLPNaCM2lcRZhz6tXewQoBcwKGads0yTlWw8TOja0PvCrRixsNhuW73
wcFCktDce6/iGnSkVLXYOnREk5qkxowEgrIbNXew6lIOblJ3DBRTUCTvjQkh
wyKR9Dxa/mRFcptxGuSyP7VJVbnJRPMaO3UD4m8PQ/oJTafXgpaqfxagIzsQ
I1+e0hHoVmlSarVFTFclTq2uxMFNHaulmC2Q5b21nA/jIm25W6WpkWuwlEml
oCtFW3HyEvvd1PBfB3/+LMmVCRNgrnrQIFGZQEsTxn5UBOzAXx69Pj77YfwK
JEVFer1LDFC7IIAbLyp4McuUkxUu6a6MFSda6nbmpE2pUv9nDb9Ku5FoNg/P
Dk6PkZ8vxpdGp673W6AghG1aw6bT2OHstVWky/4DGrzMA5oOeBYYSsIwZSaR
xqcvbRuGVsB4ncReOg7xYlGl2bhzXgu5NCETW2mVTiC5iqQ5bxVEwTS5X1Sa
MCAdC6o4EEmlqIDvUfZpMRJeLGaleZnw0POzZMFGCiWBlHUNM5umxVIUcR4C
QuZN1Xa4BcGlhzsSKs1YdlIaysP4fMYOGidxFl5AYiEXEDAjpMLPi5RdWvR5
EByj3sk/LBKC2Eae/oUyzecHwCaTggiTYaxaYHITM508iMlFuFVKN59jKFGT
ZZNmanNWnbtLF4Tcj7dCyud6Z9Dirz7ubefgXBdgwPrUBknsIFfiY4pjjshN
wfDX7ngtypYAfw0bE5oO75VXAPVrUnHm/Xqn02O83ob3U/k2j7pB5AGfX4zl
ReX+sidOzq8QXQ2agSURs/KKXEwWWckPXL4FayTaY4wqb538cvKFEebCS9+b
XH7uzSTEXeD9wdJQGIFcbOt37dGyOWEVp+HoaLrn9qgTYr+2PQBeqjQtsFHp
4Gub8ObooraNZExoJcmKN2VovnHLuTHKlGhAbAsOiHbxNZLhFN+BaHpFlNOO
2s5gyJpw4X0IF8UCM5XJLcV5hIPZP6C9JsSwiXWMkmwQM4KJCGhJZ68OqHw7
D3Fjp7F0+W1ieoNV8GhXpJqaKL20ChRtOPe1RQQIk7u6JNXaojS44pS3YUpk
YJJYUgIBL9Amv1Wqg5i4cLYFRqawCYxZ+GmOLtUcsygQxVA6JgW/qAmLGbZ0
xNlL4hWdKIRNevdDjhUOoK4ib0bRfQulNdyWC1m9Al9s4nLywq73KVkHYpNQ
Xs8Cd3l4fnS8imMegogUIKgw75SBkixS7QHuAq3uSzNkUQjUEvEA3oAuuL6a
L0L0+NRNmBRZuf6lh1wbRyfNjNdGdrBJLJh0Y8LkfOlomLuW0LlBDWzXCnRB
MJkYxK3VAegwU7k8vXrhmEjz6BxJncjXVy+egxYpvalpgaapNs9M7ymTBUVf
JpxSBiY3Xhd01PY3RrKaLQpvAqJpWw+OVUsLUgRLR2sVByWaFbp0tRIgBQAN
tWSM5Nun+Ps1WwKCRQmcG4cmiVYEXmr7kXDth7EcSWV70GC0Oute9HsTjc3W
gA0QxmRVQ7Y6a0p2fO22XppSluFCTf2Yzaolg9lUmahJlBn5UH1q1M6KY3XY
LleE7UhF7TCviKohTh93RYPYnPBox+pcP4aVRR2NSSE0QnXLG233eCB4rrYu
tbkw0XJX/NrXdivMum2D/pTZNEGVsPCWmUmSm61f4kMrS6s3QpSk9X/FrV5i
q57AAiCQyBl4EogsBTtGXf94yaOZ7udLXGjQMXm5hxPhbnzKcjv822DXSiaw
1kpVLRbl4GizFnRyKNHYl6KPWbV909rQpywxWWyvY8OG+qFfAPShSMswLJMq
rOUTOIpqlKNYhSjVJypEMSUorjjgogSAAuBjX/VLVAkjj5nl5Iimy/6S8aQ0
STvpcVBxh2WROzMelejZzmFb9raM7LGQmRQGmrbflBv7rNwXCVV3xuyB/Ndj
ORL79bsD+HnXtU2BtXSU/a+lS1ppkTZcfv/u5KwTLMvV75I6AfQo8CKZQjto
Z2qyYon7OEG5qb9CmeTGay0//aPIzO4tOiG6UAB3ejiBgPb+rmquI8I2xjQq
pUSYi1kxoQ9h1hbZK8wEsLv+iDXTqbL2YpdeiloD5dMOYch1qjC4k1GSvDc8
rGN1wXp2DStHYFAwkzQPHEVn5iP0MCJ145E/5qta7jEDdy5HeFQDZXaW1stE
O7I6asemCtepRbVYYkVqyqRAyQf0sbF2jcHR15vwlv9rdP9U6pCgr+WWLUHb
HtUG9+rhBpaDt7derExlivsu48pRfmz0tnH78uEf3LUoadq5VUFf27sV3Mn4
e93e1YdN+EEvybCQKTRlzwmkIfXMK3Lymu00/KdUDe2Yr9wb8/DWq2tRa6Md
t+5MRpW6WBc1MA/1el7vV0ded3xe8Q74tF9zIUBKbm21rPUv3U4iU9fyEX+k
F6v2FHVZgN5MLFPj7BmWz03f8GED9Y0xUO5v8wLtDqu9wb6NUK0Eqrk1gPZq
TIUH2S0mlTv8yqab+KhfufNZfuUB5aKNp/2Qa2H5FI14tXLHLNrTJk65yQEt
PS2TOBxnMCoHDtQh+mQmpiudukzl2voIA0onmcryHmjh+aghYJWjO+3yFFll
PrT1Mv3dtutoJeC1Ba2+Nab6YQ+kX66RGUOfaYaMorgGeJmbPX+hfdp1O9Ou
KaEHykzGV3OMsS+G/g2OaOboYlEqSzTeJlfbuR3fVJwPIVX5BMOyztLKmtF2
oJVM64gvMENBPowA08pBP6X7LfVuKshOTCxS2gx+tBNSeUs6SGLEI35qx9ZC
KXXV/BtEbgw9sGWnFVp1yRXmNAQVFHEdF3LN1LvBeoN2axgBDH2YAuNHlF1b
d+Xr8L3qwKzfGFGUKrpdo2cT+gtY42HSDFukqfFJuMLnqDJhVn5tFSHlFxCS
XIO2qqQACVzhLyWZqJOsXvFgZOoRN2JPuxHPOx0JJr9507S7XW5GZyVFqX5r
9RT8rmF3ZZmZPwjwLFEGYahV7WS2rsyhHuSTsqCvVVjNEUSa211axVIkTbxV
yMWjqD1jjQXuzhEWds0V1qvbxp8r66yy9DM1S/LQ4zMpXNqtESrQV1hQS4oy
el3FsX9i1J4NeshwsQamaM11AI+F5fUjQRy861MZOCu9cyx33B13e12WO/4W
pUIWMv2kiZVJTVskGpmpkHeIS0JhmAe8UtfdZYxm03qtmqoop9o5Uy0sGpUc
40tdzAxSYs59NIyFPZRr+Ww1V7zebJW3XnfmGrOY81aQzJApSoJTfgoNrd5X
GmyJtTZvmVXYcgfWGqTFYmltFVhHPSr/ABE1OWNWPR1lfjrMLFHAV6ZSG0hy
wROwmRcma9JDOpQtjRSXgkG8mvPeGmaz1zbXbfWsC9i094O+g7ACw1oAv0iy
qigkXOj6U1ua2afG2TgWhqAFXumia/M2SfUZngKLjDmo9ilYpgJGYExXuX05
b3QzunZJvlMff+cKNEEVaGUBd1mBBqsF3Afqe5ngCRKsfLNhedEMFfl8gYXO
6O9jQsvTRXZ/fQsr8NdrmOW3f3AcccSllNiNzLFwqDy1dHDt3UVywWza8YRw
A5+JGJvcGWBMeQP9BZVwY7K4oOVBHRdGNWoUtWKrepT2SBMsusJtB6CNN52G
H2qHmKRcI2To+Mhsnm+EMW+WmIJSLKv6dpJ+By2fPfuOZpn4vsdbIESnskiE
7CyN0FUTjFQ8OPtZ6ndYxC8bJUmO/kb1TFhykc09TLZQJtpCiBz9spqANj/h
TeZNuUADzGecsPGCIWwYmp/ixCRKh4PdtV4PGJ5SShmdowOZWId+jnz69Jjx
GT19Kt/g8Uj5wsOa7JoObCuFzFIKIzpM68jB1qbBrQVjXbcZbpZtlpGntZSd
vuyik4G/v236WiWgEHrh5+/wHwn6Y816lOQ5VE/w3Ps7Whf370WwdKMEHJ1e
q657axccCjncIw+h1nn+FeA/2Awm6HO0fr7qG+oO1tt9G8/wpmzcl7jjPWj1
gTZ2o3Lprrtatt7URxgiI3yz1ouzgdtro7e6+RCbt1p/Jgab6xZtyl+34Nfd
tflXQLvBVw/j9CiA4SoA1qwfBrG18wiI4SMgtnYIRJtWjTf1Z/tJ8/INhHQP
elVgz1jiuSy5piU8DIjVOrDU7h/jSbb8E4nMyJaStw+KyGNM3mj+GQJVn3f/
YUHVxB2ulI5SNrbsVWnLxmrJGxpG33tALrobd0nFZ8p8G/vtx+Thk7t3S8Nb
a6YPA1ghC2+t2T8EoFsSVvP9tXSc7+j4HZhtLw0zOjBtV5XqMocxsbjPrcBW
mZNDjjk5BC++ZpOij599XXOdn8gTc4ycHecruuLA7GmWOSKOUMljpgbotvDB
oLDWv6xXNTuZwmTJKePS3ifNS2cSey4T2k0pj/nUr5XhOQCMiYd+NXbHcaAT
hudWNhRDqY4LG+7v8fjb3FRmLE2k0JyCOdBlBfeYq6UyEvRCMnKOEW86UAPN
sX48gHmRBwYoobNGQYeAhxn5XXgWBydBW7iXLw/xnONFpGAmtA9UbS5FYUkD
PEuCCcybMCi8SNTxpIOpFMVxmpHO0gOSCXhypP50jgtxhLH0+Q9MP/QFukrT
KYbRGAhNsLgK1oXLNMEVDKfc1T6YXOU1aFxC99YDIhXsi+NwRA5MjcNCFDkg
QvQOy7CkpKKX8Vou0APjVJ7Q4YDJiNLJey/3ooRJcYM3/tBZvCbDpXpHfKo8
rNiB2P2SSgQ4zeoFN6HecKzozDWmTUiYflQfgPy4h20yvzpK62QnUOzE07ch
lurSwVKsl1K3NHgc0JVJCIPuPcoM88xiGRSKt98AT3MfQhm06BBwjoXJmPOd
qBiEiCKvtIhp04Hr6zjZjWhTkI2mTuE2LAaX0JhiGSCZUB+WsKgV5yDpp0oF
fEKxHIuqc2ndDWGAbkaQOYMrFkTj8qirKalTFp/K9qy5lJrkqOQoYeIl9HVh
ej2OJi/u8jkWBdKZtHSDM6+psPJuWSvKK8/SefJts2N9ka/XzKVO+hYnUJ0b
oGACJy8CujRqG5yL9fLIGM6siLXbj2TTv2ol3DoEWqEEL3gqMK3XEIPSIVyi
Hm53iRETltIo4s+6jI70+CSMdItV93rtAMTQVxAUYKvTk7HAOyFyz6/d3IDf
3plrpfR9UvLbB69q+u4dQPYy3GDGk4YlnRtQz/08mYD8DDeHW7RmxwvQuyjX
/5erdnlyPnbOr+j/jWURRRuD/f29/XVjgcple/TAbnmgEkHJZEkiCfyb3WUQ
QLrI6j7VMpCCRQSr+rHYTLqWO/z/veCYAaNZ4YnwSoWh13B+dF5+pfsDqD6r
2ayeWr3k6i1zYpnyi1Tv3jrlyXVepFztjKtZPlCCoRfpW75WXXmkQ2xcVWGf
2CGrHaD9aG7x/IEustrao/0drIfvzPD2AFlEhnfDrRZCXBWTvPpkOggwU/oo
Bjhv8AknNpJnEKwIcW42We1Pxmk7NoenaxYEGpwWGZfCVttVdMOTdXETrI7i
xJaDK00b9H+9JhIGKgcbi+xbrm9zgCuTlqDPTv0zXfSjRZxuAWT3jeSJebwF
D9AQ4qKYRHz9Qc03HLXRBLNs3UjIlqs0LRVDENyq6O0vWpCB8V7qi4HkidlM
TBvMqXE6qDaDarIgOIS0/z3CzLNPOUNgPi/Th4KYKTFDRhidbRx0dT71ZqEv
+ZrGtWx9ZbuXYaRrmVFvUEvgI78bpI/1zBke1Yr04R5kB+oUE3ddADsleL0c
XfgmzYYIGGpfqxXEfqpPDNcIAMFJeVWha2mZUr9MCwfmEoWkXpgFyOUrUPxG
Em8mOT9D3ueLudiFi+Ub/ozc/xzIz3ckft5Qh3MvnvHhxRQEW31u/ws0R1mo
y/sqnZQ9B7R0pvvgonkXka29BJej6rI5mGEVMIDP19X75KjUXrG6rV0PQfws
+CYQXWnQ6wCR9fAKT8eUwPbtkktof3ksL0oV0qsqZa1dJXB02XaZwlnRreBs
ldtQkZbOvh89pCRBv/tTBz45geODficz4IxJRLo6VMpuJB0gb6Dl89JcfdCp
JVaOX21OPT502fa34sA1K2Os99BMcie4cFFV69D7+LG8vpAv7aIe69/Wbza8
vwfSfWy+66/gtwjzTjn78gS4VqqWexPs71AOn6sWfpUdP4CH/JUveznBRLqE
p6tyq6z+86ssqdH40AGbj2xBH94bNxBo8vZtC7p289cVfhHA/jiST+rTkRiq
PPsqlZGMvjK703/mTyhpOKkzUrcZbk7jzYMYBaGrohP/2QMHCO6qLHz9gq/6
+WBdzos1mlUVbrkH3dghyZp3OxAdynMrwKSzGNMiPsav+nI3oJLewzObkXu1
q8l4t32Jx3rCD/IHcwUYXcqzzruc5PnoLOjbtzWcroF9uYibZwa+7zuYjp5c
6W3hXExdar3uoRMqpiyva3DfHZz93ADr5Z8HcrizQ/9cXz9a4Gcv3djadS6P
H5jvZTFzvcLHWvt7LiHD68EgOAdCuvIn65qk33n9XLpoq7pqhpaHGE6Tkvak
8fKHrc1NXQ+Tlct2cnGzW1p8TGyPgsneaDTAfIu+rqusiEPKvGvwxju8Opbu
YzRL8nYLs9kPZ8kpg3uNq1Sv3LZrm7vuVcANz9qdDHoW5oaCVoV6dSannMQt
4YvlObBYmBQJg5Lvm/z0eVOxC42tm13K27nq1Q24AhlemVi7HoavvWIcsV5c
RuF7tUIu+/IziV3nE7O+FUot4a5YZ7ebd7YN74jB/tDddIeuzTnyAc5B+W8z
j56Oj0gPCW37DB6lGqmwCocfUAasdmziXf2Eb7+8xYCbCXPoohH8t+sLXQ6E
8VpM7+FZlCqnNRmhNwWa07Z2a2jKtPvT3ia6rtqIcoNBbxVBe9ymqHNDd6th
vZVu1AW7/K1708rsUvWtdp/AeGVrG8HfY6jh40M1afbbRtra+ZSRhl88Eu0S
VSMJ+/9rnQvBwhEvgLA2D8l03SaSiMjRBddagSNZFctiXh5fY60jadB3Tfq/
A48gF5YpIOtTPQ+59BlGoshWD2F0gjVpfQagLxtkr4Pf2uHClTrBcCcI27i6
zdaOK4+ro8hcNb4I81wF5XbUnKryUVslU2ErLLoRVoeDr5OZEFchOqZvV+bX
rtERfPgHq33AFoO7XsUv9+xgYknOQsXsw/ieyehRPA0u7t2K81DQ7RWWblZn
jWGurXqeMKY/SJCyE1yeRIbObzK63yCJqTyVOtJNKvb+3iMT3/60iR8EQfc+
odGe0OaSLgmWIV990CjHQ7zo1gsNjHZi7OLzsmqveTEI93psHlufNo8LnXA2
d+RY24CIYcc1FtDpigr1p3d0hySuKaEYBmGCOREfkL0jFtAEaB9xyB5Ff/jp
y2AVoZntSZImTVC7zOuxUQefNiqy2enJ6TGb3DIfSRTTGfYwhtDTo1uBcEu4
bI29ObFsX7KKEapP10vSJ4rKTo54U4rOryMDmdtvmB/KovSYvS0AfBh5tE9p
37Rp7Xw/OvvNT6e5KTk292w0l9dpVzjbElzkoA5+QZfUFk1HnoYxZtnCDxyC
mPCX4CCvCfGAwuI/H4BbIigg+PcA3qu0+lMoQeJv4N8bWfG3SHBL4QGl8KXA
t1cD3/pi4FurgQ+/GPhwNfDBFwMfrAa++cXAN9HmHfhYlBGpgLLcmfg4KmJO
LqvgXm/PeGUbrN91Wn+Q5X8B5OE0t8RoAAA=

-->

</rfc>
