<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.27 (Ruby 3.3.6) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-lenders-dns-cbor-13" category="std" consensus="true" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.28.1 -->
  <front>
    <title abbrev="dns+cbor">A Concise Binary Object Representation (CBOR) of DNS Messages</title>
    <seriesInfo name="Internet-Draft" value="draft-lenders-dns-cbor-13"/>
    <author fullname="Martine Sophie Lenders">
      <organization abbrev="TU Dresden">TUD Dresden University of Technology</organization>
      <address>
        <postal>
          <street>Helmholtzstr. 10</street>
          <city>Dresden</city>
          <code>D-01069</code>
          <country>Germany</country>
        </postal>
        <email>martine.lenders@tu-dresden.de</email>
      </address>
    </author>
    <author initials="C." surname="Bormann" fullname="Carsten Bormann">
      <organization>Universität Bremen TZI</organization>
      <address>
        <postal>
          <street>Postfach 330440</street>
          <city>Bremen</city>
          <code>D-28359</code>
          <country>Germany</country>
        </postal>
        <phone>+49-421-218-63921</phone>
        <email>cabo@tzi.org</email>
      </address>
    </author>
    <author fullname="Thomas C. Schmidt">
      <organization>HAW Hamburg</organization>
      <address>
        <email>t.schmidt@haw-hamburg.de</email>
      </address>
    </author>
    <author initials="M." surname="Wählisch" fullname="Matthias Wählisch">
      <organization abbrev="TU Dresden &amp; Barkhausen Institut">TUD Dresden University of Technology &amp; Barkhausen Institut</organization>
      <address>
        <postal>
          <street>Helmholtzstr. 10</street>
          <city>Dresden</city>
          <code>D-01069</code>
          <country>Germany</country>
        </postal>
        <email>m.waehlisch@tu-dresden.de</email>
      </address>
    </author>
    <date year="2025" month="April" day="16"/>
    <area>Applications</area>
    <workgroup>CBOR</workgroup>
    <keyword>Internet-Draft</keyword>
    <keyword>CBOR</keyword>
    <keyword>DNS</keyword>
    <abstract>
      <?line 82?>

<t>This document specifies a compact data format of DNS messages using
the Concise Binary Object Representation <xref target="RFC8949"/>.
The primary purpose is to keep DNS messages small in constrained networks.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://cbor-wg.github.io/cbor-dns/draft-lenders-dns-cbor.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-lenders-dns-cbor/"/>.
      </t>
      <t>
        Discussion of this document takes place on the
        CBOR Working Group mailing list (<eref target="mailto:cbor@ietf.org"/>),
        which is archived at <eref target="https://mailarchive.ietf.org/arch/browse/cbor/"/>.
        Subscribe at <eref target="https://www.ietf.org/mailman/listinfo/cbor/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/cbor-wg/cbor-dns"/>.</t>
    </note>
  </front>
  <middle>
    <?line 89?>

<section anchor="introduction">
      <name>Introduction</name>
      <t>In constrained networks <xref target="RFC7228"/>, the link layer may restrict the payload sizes of frames to
only a few hundreds bytes.  Encrypted DNS resolution, such as DNS over HTTPS (DoH) <xref target="RFC8484"/> or
DNS over CoAP (DoC) <xref target="I-D.ietf-core-dns-over-coap"/>, may lead to DNS message sizes that exceed this limit, even when
implementing header compression such as 6LoWPAN IPHC <xref target="RFC6282"/> or SCHC <xref target="RFC8724"/>,
<xref target="RFC8824"/>.</t>
      <t>Although adoption layers such as 6LoWPAN <xref target="RFC4944"/> or SCHC <xref target="RFC8724"/> offer fragmentation to
comply with small MTUs, fragmentation should be avoided in constrained networks.
Fragmentation combined with high packet loss multiplies the likelihood of loss.
Hence, a compression format that reduces fragmentation of DNS messages is beneficial.</t>
      <t>This document specifies a compact data format for DNS messages using Concise Binary Object Representation (CBOR) <xref target="RFC8949"/> encoding. Additionally,  unnecessary or redundant information are stripped off DNS messages.  To use the outcome of this specification in DoH and DoC,
this document also specifies a Media Type header for DoH and a Content-Format option for DoC.</t>
      <t>Note, that there is another format that expresses DNS messages in CBOR, C-DNS <xref target="RFC8618"/>.
C-DNS is primarily a file format to minimize traces of multiple DNS messages and uses the fact that there are multiple messages to do its compression.
Common values such as names or addresses are collected in separate tables which are referenced from the messages, comparable to Packed CBOR <xref target="I-D.ietf-cbor-packed"/>.
However, this may add overhead for individual DNS messages.</t>
      <t>The format described in this document is a transfer format that aims to provide conciseness and compression for individual DNS messages to be sent over the network.
This is achieved applying the following objectives:</t>
      <ol spacing="normal" type="1"><li>
          <t>Encoding DNS messages in CBOR (conciseness),</t>
        </li>
        <li>
          <t>Omitting (redundant) fields in DNS queries and responses (conciseness),</t>
        </li>
        <li>
          <t>Providing easy to implement name compression that allows for on-the-fly construction of DNS queries and responses (compression), and</t>
        </li>
        <li>
          <t>Providing optional address and value compression in DNS responses using Packed CBOR <xref target="I-D.ietf-cbor-packed"/> (compression).</t>
        </li>
      </ol>
    </section>
    <section anchor="terminology">
      <name>Terminology</name>
      <t>CBOR types (unsigned integer, byte string, text string, arrays, etc.) are used as defined in
<xref target="RFC8949"/>.</t>
      <t>The terms "DNS server", "DNS client", and "(DNS) resolver" are used as defined in <xref target="RFC8499"/>.</t>
      <t>A DNS query is a message that queries DNS information from an upstream DNS resolver.
The reply to that is a DNS response.</t>
      <t>The DNS message format specified in <xref target="RFC1035"/> for DNS over UDP we call "classic DNS format" throughout this document or refer to it by its media type "application/dns-message" as specified in <xref target="RFC8484"/>.</t>
      <t>The term "constrained networks" is used as defined in <xref target="RFC7228"/>.</t>
      <t>The key words "<bcp14>MUST</bcp14>", "<bcp14>MUST NOT</bcp14>", "<bcp14>REQUIRED</bcp14>", "<bcp14>SHALL</bcp14>", "<bcp14>SHALL
NOT</bcp14>", "<bcp14>SHOULD</bcp14>", "<bcp14>SHOULD NOT</bcp14>", "<bcp14>RECOMMENDED</bcp14>", "<bcp14>NOT RECOMMENDED</bcp14>",
"<bcp14>MAY</bcp14>", and "<bcp14>OPTIONAL</bcp14>" in this document are to be interpreted as
described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they
appear in all capitals, as shown here.</t>
      <?line -18?>

</section>
    <section anchor="cbor-representations-applicationdnscbor">
      <name>CBOR Representations (application/dns+cbor)</name>
      <t>DNS messages are represented as CBOR arrays to minimize overhead.
All CBOR items used in this specification are of definite length.
CBOR arrays that do not follow the length definitions of this or of follow-up specifications, <bcp14>MUST</bcp14> be silently ignored.
CBOR arrays that exceed the message size provided by the transport, <bcp14>MUST</bcp14> be silently ignored.
It is assumed that DNS query and DNS response are distinguished message types and that the query can be mapped to the response by the transfer protocol of choice.
To define the representation of binary objects we use the Concise Data Definition Language (CDDL) <xref target="RFC8610"/>.
For examples, we use the CBOR Extended Diagnostic Notation <xref target="I-D.ietf-cbor-edn-literals"/>.</t>
      <figure anchor="fig_dns-msg">
        <name>This document defines both DNS Queries and Responses in CDDL</name>
        <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-message = dns-query / dns-response
]]></sourcecode>
      </figure>
      <t>If, for any reason, a DNS message cannot be represented in the CBOR format specified in this document, or if unreasonable overhead is introduced, a fallback to another DNS message format, e.g., the classic DNS format specified in <xref target="RFC1035"/>, <bcp14>MUST</bcp14> always be possible.</t>
      <section anchor="sec_domain-names">
        <name>Domain Name Representation</name>
        <t>Domain names are represented by a sequence of one or more (unicode) text strings optionally followed
by an array containing another domain name.
For instance, "example.org" would be represented as <tt>"example","org"</tt> or <tt>"example",["org"]</tt> in CBOR diagnostic notation.
We call the representation without arrays, e.g., <tt>"example","org"</tt> the "flat representation" of a domain name throughout the document.
The root domain "." is represented as an empty string <tt>""</tt>.
The absence of any label means the name is elided.
For the purpose of this document, domain names remain case-insensitive as specified in <xref target="RFC1035"/>.</t>
        <t>The representation of a domain name is defined in <xref target="fig_domain-name"/>.
A label may either be encoded in ASCII-compatible encoding (ACE) <xref target="RFC5891"/> embedded within UTF-8 encoding of the text strings or plain UTF-8.
It is <bcp14>RECOMMENDED</bcp14> to use the encoding with the shorter length in bytes.
A decoder <bcp14>MAY</bcp14> identify the ACE encoding by identifying the label as a valid A-label (see <xref target="RFC5891"/>) and <bcp14>MUST</bcp14> assume the label to be encoded in UTF-8 otherwise.</t>
        <t>This sequence of text strings is supposed to be embedded into a surrounding array, usually the query
or resource record.</t>
        <t>Name compression is implemented using an extension to Packed CBOR, see <xref target="sec_name-compression"/>.
For readers unfamiliar with Packed CBOR this name compression can be abstracted to a name
compression similar to that described in <xref section="4.1.4" sectionFormat="of" target="RFC1035"/>.
However, instead of using the byte index as reference within the message, text strings are counted,
starting at 0, depth-first within the message.
That number is used as index for the reference.
Names <bcp14>MUST</bcp14> be sent in flat representation over the wire, i.e., they only can consist of text strings and references to
another domain name, but no array of text strings.
Since name labels are the only text strings, the end of a name can be identified when the decoder cursor
does not point to a text string or reference to another domain name anymore.
For the reference itself, either simple values or tag 6 are used (see <xref section="2.2" sectionFormat="of" target="I-D.ietf-cbor-packed"/>).</t>
        <figure anchor="fig_domain-name">
          <name>Domain Name Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
domain-name = ( *label, ?[ *domain-name ] )
label = tstr
]]></sourcecode>
        </figure>
      </section>
      <section anchor="sec_rr">
        <name>DNS Resource Records</name>
        <t>This document specifies the representation of both standard DNS resource records (RRs, see <xref target="RFC1035"/>)
and EDNS option pseudo-RRs (see <xref target="RFC6891"/>.<cref anchor="_1" source="—mlenders">Also add capability to summarize Resource Record Sets to one array, e.g. <tt>["example","org",3600,1,[b'c0002563', h'c00021ab']]</tt>?</cref>
If for any reason, a resource record cannot be represented in the given formats, they can be
represented in their binary wire-format form as a byte string.</t>
        <t>Further special records, e.g., TSIG can be defined in follow-up specifications and are out of scope
of this document.</t>
        <t>The representation of a DNS resource records is defined in <xref target="fig_dns-rr"/>.</t>
        <figure anchor="fig_dns-rr">
          <name>DNS Resource Record Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
$$dns-rr = rr / #6.141(opt-rr) / bstr
]]></sourcecode>
        </figure>
        <section anchor="standard-rrs">
          <name>Standard RRs</name>
          <t>Standard DNS resource records are encoded as CBOR arrays containing 2 or more entries in the following order:</t>
          <ol spacing="normal" type="1"><li>
              <t>An optional name (as text string, see <xref target="sec_domain-names"/>),</t>
            </li>
            <li>
              <t>A TTL (as unsigned integer),</t>
            </li>
            <li>
              <t>An optional record type (as unsigned integer),</t>
            </li>
            <li>
              <t>An optional record class (as unsigned integer), and lastly</t>
            </li>
            <li>
              <t>A record data entry (as byte string, domain name, or array for dedicated record data representation).</t>
            </li>
          </ol>
          <t>If the first item of the resource record is a text string, it is the first label of a domain name (see <xref target="sec_domain-names"/>).
If the name is elided, the name is derived from the question section of the message.
For responses, the question section is either taken from the query (see <xref target="sec_queries"/>) or provided with the response see <xref target="sec_responses"/>.
The query may be derived from the context of the transfer protocol.</t>
          <t>If the record type is elided, the record type from the question is assumed.
If record class is elided, the record class from the question is assumed.
When a record class is required to be expressed, the record type <bcp14>MUST</bcp14> also be provided.</t>
          <t>The byte string format of the record data as a byte string follows the classic DNS format as specified in <xref section="3.3" sectionFormat="of" target="RFC1035"/> (or other specifications of the respective record type).
Note that the CBOR format does not include the RDLENGTH field from the classic format as this value is encoded in the length field of the CBOR header of the byte string.</t>
          <t>If the record data represents a domain name (e.g., for CNAME or PTR records), the record data <bcp14>MAY</bcp14> be represented as domain name as specified in <xref target="sec_domain-names"/>.
This can save 1 byte of data, as the zero byte at the end of the name is not necessary with the CBOR format.
Only 1 byte is required to define type and length of each text string representing a label up until a string length of 23 characters, amortizing to the same remaining length as in the name representation in the classic format.
This way of representing the record data also means that name compression (see <xref target="sec_name-compression"/>) can also be used on it.</t>
          <t>Depending on the record type, the record data may also be expressed as an array.
Some initial array types are specified below.
Future specifications can extend the definition for <tt>$rdata-array</tt> in <xref target="fig_dns-standard-rr"/>.
These extensions mainly serve to expose names to name compression (see <xref target="sec_name-compression"/>).
There is an argument to be made for CBOR-structured formats of other record data representations (e.g. DNSKEY or RRSIG), but structuring such records as an array usually adds more overhead than just transferring the byte representation.
As such, structured record data that do not contain names are always to be represented as a byte string.</t>
          <figure anchor="fig_dns-standard-rr">
            <name>DNS Standard Resource Record Definition</name>
            <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
max-uint8 = 0..255
max-uint16 = 0..65535
max-uint32 = 0..4294967295
ttl = max-uint32
rr = [
  ? domain-name,
  ttl: ttl,
  type-spec-rdata,
]
type-spec-rdata = (
  ? type-spec,
  rdata: bstr // ( domain-name ),
)
type-spec-rdata //= ( $$structured-ts-rd )
type-spec = (
  record-type: max-uint16,
  ? record-class: max-uint16,
)
]]></sourcecode>
          </figure>
          <section anchor="soa-record-data">
            <name>SOA Record Data</name>
            <t>The record data of RRs with <tt>record-type</tt> = 6 (SOA) <bcp14>MAY</bcp14> be expressed as an array with at least 7 entries representing the 7 parts of the SOA resource record defined in <xref target="RFC1035"/> in the following order:</t>
            <ul spacing="normal">
              <li>
                <t>MNAME as a domain name (see <xref target="sec_domain-names"/>),</t>
              </li>
              <li>
                <t>SERIAL as an unsigned integer,</t>
              </li>
              <li>
                <t>REFRESH as an unsigned integer,</t>
              </li>
              <li>
                <t>RETRY as an unsigned integer,</t>
              </li>
              <li>
                <t>EXPIRE as an unsigned integer,</t>
              </li>
              <li>
                <t>MINIMUM as an unsigned integer, and</t>
              </li>
              <li>
                <t>RNAME as a domain name (see <xref target="sec_domain-names"/>).</t>
              </li>
            </ul>
            <t>MNAME and RNAME are put to the beginning and end of the array, respectively, to keep their labels apart.</t>
            <t>The definition for MX record data can be seen in <xref target="fig_dns-rdata-soa"/>.</t>
            <figure anchor="fig_dns-rdata-soa">
              <name>SOA Resource Record Data Definition</name>
              <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
$$structured-ts-rd //= (
  6,    ; record-type = SOA
  ? 1,  ; record-class = IN
  soa,
)

soa = [
  domain-name,  ; mname
  serial: max-uint32,
  refresh: max-uint32,
  retry: max-uint32,
  expire: max-uint32,
  minimum: max-uint32,
  domain-name,  ; rname
]
]]></sourcecode>
            </figure>
          </section>
          <section anchor="mx-record-data">
            <name>MX Record Data</name>
            <t>The record data of RRs with <tt>record-type</tt> = 15 (MX) <bcp14>MAY</bcp14> be expressed as an array with at least 2 entries representing the 2 parts of the MX resource record defined in <xref target="RFC1035"/> in the following order:</t>
            <ul spacing="normal">
              <li>
                <t>PREFERENCE as an unsigned integer and</t>
              </li>
              <li>
                <t>EXCHANGE as a domain name (see <xref target="sec_domain-names"/>).</t>
              </li>
            </ul>
            <t>The definition for MX record data can be seen in <xref target="fig_dns-rdata-mx"/>.</t>
            <figure anchor="fig_dns-rdata-mx">
              <name>MX Resource Record Data Definition</name>
              <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
$$structured-ts-rd //= (
  15,   ; record-type = MX
  ? 1,  ; record-class = IN
  mx,
)

mx = [
  preference: max-uint16,
  domain-name,  ; exchange
]
]]></sourcecode>
            </figure>
          </section>
          <section anchor="srv-record-data">
            <name>SRV Record Data</name>
            <t>The record data of RRs with <tt>record-type</tt> = 33 (SRV) <bcp14>MAY</bcp14> be expressed as an array with at least 3 entries representing the parts of the SRV resource record defined in <xref target="RFC2782"/> in the following order:</t>
            <ul spacing="normal">
              <li>
                <t>Priority as an unsigned integer,</t>
              </li>
              <li>
                <t>an optional Weight as an unsigned integer,</t>
              </li>
              <li>
                <t>Port as an unsigned integer,</t>
              </li>
              <li>
                <t>Target as a domain name (see <xref target="sec_domain-names"/>).</t>
              </li>
            </ul>
            <t>If the weight is present or not can be determined by the number of unsigned integers before Target.
2 unsigned integers before the Target mean the weight was elided and defaults to 0.
3 unsigned integers before the Target mean the weight is in the second position of the record data array.
The default of 0 was picked, as this is the value domain administrators should pick when there is no server selection to do <xref target="RFC2782"/>.</t>
            <t>The definition for SRV record data can be seen in <xref target="fig_dns-rdata-srv"/>.</t>
            <figure anchor="fig_dns-rdata-srv">
              <name>SRV Resource Record Data Definition</name>
              <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
$$structured-ts-rd //= (
  33,   ; record-type = SRV
  ? 1,  ; record-class = IN
  srv,
)

srv = [
  priority: max-uint16,
  ? weight: max-uint16 .default 0,
  port: max-uint16,
  domain-name,  ; target
]
]]></sourcecode>
            </figure>
          </section>
          <section anchor="svcb-and-https-record-data">
            <name>SVCB and HTTPS Record Data</name>
            <t>The record data of RRs with <tt>record-type</tt> = 64 (SVCB) and <tt>record-type</tt> = 65 (HTTPS) <bcp14>MAY</bcp14> be expressed as an array with at least 3 entries representing the 3 parts of the SVCB/HTTPS resource record defined in <xref target="RFC9460"/> in the following order:</t>
            <ul spacing="normal">
              <li>
                <t>An optional SvcPriority as an unsigned integer,</t>
              </li>
              <li>
                <t>An optional TargetName as a domain name (see <xref target="sec_domain-names"/>), and</t>
              </li>
              <li>
                <t>SvcParams as an array of alternating pairs of SvcParamKey (as unsigned integer) and SvcParamValue
(as byte string).
The type of SvcParamValue may be extended in future specifications.</t>
              </li>
            </ul>
            <t>If the SvcPriority is present can be determined by checking if the record data array starts with an unsigned integer or not.
If the array does not start with an unsigned integer, the SvcPriority is elided and defaults to 0, i.e., the record is in AliasMode (see <xref section="2.4.2" sectionFormat="of" target="RFC9460"/>).
If the array starts with a unsigned integer, it is the SvcPriority.</t>
            <t>If the TargetName is present can be determined by checking if the record data array has a domain name after the SvcPriority, i.e., if the SvcPriority is elided the array would start with a domain name.
If there is no domain name after the SvcPriority, the TargetName is elided and defaults to the sequence of text strings <tt>""</tt> (i.e. the root domain "." in the common name representation defined in <xref section="2.3.1" sectionFormat="of" target="RFC1035"/>, see <xref target="sec_domain-names"/>) and <xref section="2.5" sectionFormat="of" target="RFC9460"/>.
If there is a domain name after the SvcPriority, the TargetName is not elided and in the domain name form specified in <xref target="sec_domain-names"/>.</t>
            <t>The definition for SVCB and HTTPS record data can be seen in <xref target="fig_dns-rdata-svcb"/>.</t>
            <figure anchor="fig_dns-rdata-svcb">
              <name>SVCB and HTTPS Resource Record Data Definition</name>
              <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
$$structured-ts-rd //= (
  64 / 65,  ; record-type = SVCB or HTTPS
  ? 1,      ; record-class = IN
  svcb,
)

svcb = [
  ? svc-priority: max-uint16 .default 0,
  ? domain-name,  ; target name
  svc-params: [ *svc-param-pair ],
]

svc-param-pair = (
  svc-param-key: max-uint16,
  svc-param-value: $$svc-param-value,
)
$$svc-param-value = bstr
]]></sourcecode>
            </figure>
            <t>The SvcParams are provided as an array rather than a map, as their order needs to be preserved <xref target="RFC9460"/> which can not be guaranteed for maps.</t>
          </section>
        </section>
        <section anchor="sec_edns">
          <name>EDNS OPT Pseudo-RRs</name>
          <t>EDNS OPT Pseudo-RRs are represented as a CBOR array.
To distinguish them from normal standard RRs, they are marked with tag TBD141.</t>
          <t>Name and record type can be elided as they are always "." and OPT (41), respectively <xref target="RFC6891"/>.</t>
          <t>The UDP payload size may be the first element as an unsigned integer in the array.
It <bcp14>MUST</bcp14> be elided if its value is the default value of 512, the maximum allowable size for unextended DNS over UDP (see Sections <xref target="RFC1035" section="2.3.4" sectionFormat="bare"/> and <xref target="RFC1035" section="4.2.1" sectionFormat="bare"/> of <xref target="RFC1035"/>).</t>
          <t>The next element is a map of the options, with the option code (unsigned integer) as key and the option data (byte string) as value.
The type of option data may be extended in future specifications.</t>
          <t>After that, up to three unsigned integers are following.
The first being the extended flags as unsigned integer (implied to be 0 if elided),
the second the extended RCODE as an unsigned integer (implied to be 0 if elided), and
the third the EDNS version (implied to be 0 if elided).
They are dependent on each of their previous elements.
If the EDNS version is not elided, both extended flags and extended RCODE <bcp14>MUST</bcp14> not be elided.
If the RCODE is not elided the extended flags <bcp14>MUST</bcp14> not be elided.</t>
          <t>Note that future EDNS versions may require a different format than the one described above.</t>
          <figure anchor="fig_dns-opt-rr">
            <name>DNS OPT Resource Record Definition</name>
            <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
opt-rr = [
  ? udp-payload-size: max-uint16 .default 512,
  options: {* ocode => $$odata },
  ? opt-rcode-v-flags,
]
ocode = max-uint16
opt-rcode-v-flags = (
  flags: max-uint16 .default 0,
  ? opt-rcode-v,
)
rcode = 0..4095
opt-rcode-v = (
  rcode: rcode .default 0,
  ? version: max-uint8 .default 0,
)
$$odata = bstr
]]></sourcecode>
          </figure>
        </section>
      </section>
      <section anchor="sec_queries">
        <name>DNS Queries</name>
        <t>DNS queries are encoded as CBOR arrays containing up to 6 entries in the following order:</t>
        <ol spacing="normal" type="1"><li>
            <t>An optional boolean field,</t>
          </li>
          <li>
            <t>An optional flag field (as unsigned integer),</t>
          </li>
          <li>
            <t>The question section (as array),</t>
          </li>
          <li>
            <t>An optional answer section (as array),</t>
          </li>
          <li>
            <t>An optional authority section (as array), and</t>
          </li>
          <li>
            <t>An optional additional section (as array)</t>
          </li>
        </ol>
        <t>If the first item is a boolean and when true, it tells the responding resolver that it <bcp14>MUST</bcp14> include the question section in its response. If that boolean is not present, it is assumed to be false.</t>
        <t>If the first item of the query is an array, it is the question section, if it is an unsigned integer, it is as flag field and maps to the header flags in <xref target="RFC1035"/> and the "DNS Header Flags" IANA registry including the QR flag and the Opcode.</t>
        <t>If the flags are elided, the value 0 is assumed.</t>
        <t>This specification assumes that the DNS messages are sent over a transfer protocol that can map the queries to their responses, e.g., DNS over HTTPS <xref target="RFC8484"/> or DNS over CoAP <xref target="I-D.ietf-core-dns-over-coap"/>.
As a consequence, the DNS transaction ID is always elided and the value 0 is assumed.</t>
        <t>A question record within the question section is encoded as a CBOR array containing the following entries:</t>
        <ol spacing="normal" type="1"><li>
            <t>The queried name (as domain name, see <xref target="sec_domain-names"/>) which <bcp14>MUST</bcp14> not be elided,</t>
          </li>
          <li>
            <t>An optional record type (as unsigned integer), and</t>
          </li>
          <li>
            <t>An optional record class (as unsigned integer)</t>
          </li>
        </ol>
        <t>If the record type is elided, record type <tt>AAAA</tt> as specified in <xref target="RFC3596"/> is assumed.
If the record class is elided, record class <tt>IN</tt> as specified in <xref target="RFC1035"/> is assumed.
When a record class is required, the record type <bcp14>MUST</bcp14> also be provided.</t>
        <t>There usually is only one question record <xref target="RFC9619"/>, which is why the question section is a flat array and not nested like the other sections.
This serves to safe overhead from the additional CBOR array header.
In the rare cases when there is more than one question record in the question section, the next question just follows.
In this case, for every question but the last, the record type <bcp14>MUST</bcp14> be included, i.e., it is not optional.
This way it is ensured that the parser can distinguish each question by looking up the name first.</t>
        <t>The remainder of the query is either empty or <bcp14>MUST</bcp14> consist of up to three extra arrays.</t>
        <t>If one extra array is in the query, it encodes the additional section of the query as an array of DNS resource records (see <xref target="sec_rr"/>).
If two extra arrays are in the query, they encode, in that order, the authority and additional sections of the query each as an array of DNS resource records (see <xref target="sec_rr"/>).
If three extra arrays are in the query, they encode, in that order, the answer section, the authority, and additional sections of the query each as an array of DNS resource records (see <xref target="sec_rr"/>).</t>
        <t>As such, the highest precedence in elision is given to the answer section, as it only occurs with mDNS to signify Known Answers <xref target="RFC6762"/>.
The lowest precedence is given to the additional section, as it may contain EDNS OPT Pseudo-RRs, which are common in queries (see <xref target="sec_edns"/>).</t>
        <t>The representation of a DNS query is defined in <xref target="fig_dns-query"/>.</t>
        <figure anchor="fig_dns-query">
          <name>DNS Query Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-query = [
  ? incl-question: bool .default false,
  ? flags: max-uint16 .default 0x0000,
  question-section,
  ? query-extra-sections,
]
question-section = [
  * full-question,
  ? last-question,
]
full-question = (
  domain-name,
  type-spec,
)
last-question = (
  domain-name,
  ? type-spec,
)
query-extra-sections = (
  ? answer-section,
  extra-sections,
)
answer-section = [+ $$dns-rr]
extra-sections = (
  ? authority: [+ $$dns-rr],
  additional: [+ $$dns-rr],
)
]]></sourcecode>
        </figure>
      </section>
      <section anchor="sec_responses">
        <name>DNS Responses</name>
        <t>A DNS response is encoded as a CBOR array containing up to 5 entries.</t>
        <ol spacing="normal" type="1"><li>
            <t>An optional flag field (as unsigned integer),</t>
          </li>
          <li>
            <t>An optional question section (as array, encoded as described in <xref target="sec_queries"/>)</t>
          </li>
          <li>
            <t>The answer section (as array),</t>
          </li>
          <li>
            <t>An optional authority section (as array), and</t>
          </li>
          <li>
            <t>An optional additional section (as array)</t>
          </li>
        </ol>
        <t>As for queries, the DNS transaction ID is elided and implied to be 0.</t>
        <t>If the CBOR array is a response to a query for which the flags indicate that flags are set in the
response, they <bcp14>MUST</bcp14> be set accordingly and thus included in the response.
If the flags are not included, the flags are implied to be 0x8000 (everything unset except for the
QR flag).</t>
        <t>If the response includes only one array, then the DNS answer section represents an
array of one or more DNS Resource Records (see <xref target="sec_rr"/>).</t>
        <t>If the response includes more than 2 arrays, the first entry may be the question section, identified
by not being an array of arrays. If it is present, it is followed by the answer section. The
question section is encoded as specified in <xref target="sec_queries"/>.</t>
        <t>If the answer section is followed by one extra array, this array is the additional section.
Like the answer section, the additional section is represented as an array of one or more DNS Resource Records (see <xref target="sec_rr"/>).</t>
        <t>If the answer section is followed by two extra arrays, the first is the authority section, and the second is the additional section.
The authority section is also represented as an array of one or more DNS Resource Records (see
<xref target="sec_rr"/>).</t>
        <t>The authority section is given precedence in elision over the additional section, as due to EDNS options or, e.g., CNAME answers that also provide the A/AAAA records. The additional section tends to show up more often than the authority section.</t>
        <figure anchor="fig_dns-response">
          <name>DNS Response Definition</name>
          <sourcecode type="cddl" name="dns-cbor.cddl"><![CDATA[
dns-response = [
  ? flags: max-uint16 .default 0x8000,
  ? question-section,
  answer-section,
  ? extra-sections,
]
]]></sourcecode>
        </figure>
      </section>
    </section>
    <section anchor="sec_cbor-packed">
      <name>Compression with Packed CBOR</name>
      <t>Packed CBOR <xref target="I-D.ietf-cbor-packed"/> is used for name compression in application/dns+cbor.</t>
      <t>If both DNS server and client support table setup tag 113 as described in <xref section="3.1" sectionFormat="of" target="I-D.ietf-cbor-packed"/>, it <bcp14>MAY</bcp14> be used for further
compression in DNS responses.
Especially IPv6 addresses, e.g., in AAAA resource records can benefit from straight referencing to
compress common address prefixes.</t>
      <section anchor="sec_name-compression">
        <name>Name Compression</name>
        <sourcecode type="cddl"><![CDATA[
Text-String-Suffix-Sequence-Packed-CBOR = #6.28259(rump)
]]></sourcecode>
        <t>For name compression, a new packing table setup tag TBD28259 ('n' and 'c' in ASCII) for Packed CBOR <xref target="I-D.ietf-cbor-packed"/> is defined.
It provides an implicit text string suffix sequence table for shared items <em>V</em> which is appended to the existing table for shared items of any table setup tag within the content of tag TBD28259 (by default empty table).
This implicit (i.e. not explicitly represented) table <em>V</em> is constructed as follows:
Any coherent sequence of domain names encountered within the rump of tag TBD28259, as well as any of its non-empty suffixes, are added to the table as arrays in depth-first order.
Domain names within any tables for shared items or argument items within the rump <bcp14>MUST</bcp14> not be added to <em>V</em>.
If a domain name for which an array of the flat representation is already in <em>V</em> is encountered, a shared item reference <em>i</em> to that array in V replaces this sequence.
This shared item reference <em>i</em> means: take the array at <em>V</em>[<em>i</em>] and put it into the surrounding array in place of <em>i</em>.
The resulting rump should look like referencing the <em>i</em>-th string (depth first) in the message.</t>
        <t>The "application/dns+cbor" media type comes with an optional parameter "packed".
If it is not provided, the value of it is assumed to be 0.
With packed=0, any CBOR object <tt>obj</tt> marked by the "application/dns+cbor" media type <bcp14>MUST</bcp14> explicitly be understood as <tt>TBD28259(obj)</tt>, unless it is already <tt>obj</tt> itself is already tagged explicitly with TBD28259 as a whole.
This also means, that an "application/dns+cbor" encoder and decoder <bcp14>MUST</bcp14> support packed value 0.</t>
        <section anchor="example">
          <name>Example</name>
          <t>Take the following CBOR object <em>o</em> (note that this is <strong>intentionally not legal "application/dns+cbor"</strong> to illustrate generality). A more DNS-specific example can be found in <xref target="sec_response-examples"/>.</t>
          <figure anchor="fig_name-compression-example-unpacked">
            <name>Unpacked example for implicit text string suffix sequence compression.</name>
            <sourcecode type="edn"><![CDATA[
[
  "www", "example", "org",
  ["svc", "www", "example", "org"],
  "org", "example", "org", 42,
  "svc", "www", "example", "org", 42
]
]]></sourcecode>
          </figure>
          <t>This would generate the following virtual table <em>V</em>.</t>
          <figure anchor="fig_name-compression-example-table">
            <name>Implicit table of shared items for the example.</name>
            <sourcecode type="edn"><![CDATA[
[
    ["www", "example", "org"],
    ["example", "org"],
    ["org"],
    ["svc", simple(0)],
    ["org", "example", "org"]
]
]]></sourcecode>
          </figure>
          <t>Note that the sequence "org", "example", "org" is added at index 4 with leading "org", instead of referencing index 2 + index 1 (<tt>simple(2), simple(1)</tt>), as it is its own distinct suffix sequence.</t>
          <t>The packed representation of <em>o</em> would thus be:</t>
          <figure anchor="fig_name-compression-example-packed">
            <name>The packed representation of the example.</name>
            <sourcecode type="edn"><![CDATA[
TBD28259(
  [
    "www", "example", "org",
    ["svc", simple(0) / expands to ["www", "example", "org"] /],
    "org", simple(1) / expands to ["example", "org"] /, 42,
    simple(3) / expands to ["svc", ["www", "example", "org"]] /, 42
  ]
)
]]></sourcecode>
          </figure>
          <t>Note, the shared value references expand to arrays and thus the unpacked form of <xref target="fig_name-compression-example-packed"/> is syntactically not equivalent to <xref target="fig_name-compression-example-unpacked"/>.
However, since, e.g., the domain name <tt>"org",["example","org"]</tt> in its flat representation is <tt>"org","example","org"</tt>, they are semantically equivalent in "application/dns+cbor" (see also <xref target="sec_domain-names"/>).</t>
          <t>Also note, with "application/dns+cbor;packed=0" the surrounding TBD28259 can be elided (even though the content would not be parsable as application/dns+cbor).</t>
          <t>With, e.g., table setup tag 113, further packing can be achieved via nesting table packing.</t>
          <figure anchor="fig_name-compression-example-packed-113">
            <name>The packed representation of the example with additional table setup.</name>
            <sourcecode type="edn"><![CDATA[
TBD113(
  TBD28259(
    [
      ["org", 42],
      [
        "www", "example", simple(5) / expands to "org" /,
        ["svc", simple(0) / expands to ["www", "example", "org"] /],
        simple(5),  / expands to "org" /
        simple(1),  / expands to ["www", "example", "org"] /
        simple(6),  / expands to 42 /
        simple(3),  / expands to ["svc", ["www", "example", "org"]] /
        simple(6)   / expands to 42 /
      ]
    ]
  )
)
]]></sourcecode>
          </figure>
          <t>Note, how the previous references in <xref target="fig_name-compression-example-packed"/> do not changed, as the table <tt>["org", 42]</tt> is appended.</t>
        </section>
      </section>
      <section anchor="further-dns-representation-with-tag-113">
        <name>Further DNS Representation with tag 113</name>
        <t>The representation of DNS responses with packed value 1, i.e. "application/dns+cbor;packed=1", has the same semantics as for tag TBD113
(see <xref section="3.1" sectionFormat="of" target="I-D.ietf-cbor-packed"/>) with the rump being the compressed response.
The difference to <xref target="I-D.ietf-cbor-packed"/> is that tag TBD113 is <bcp14>OPTIONAL</bcp14> with parameter "packed=1".
As such, any CBOR object <tt>obj</tt> marked by the "application/dns+cbor;packed=1" media type and parameter <bcp14>MUST</bcp14> explicitly be understood as <tt>TBD113(TBD28259(obj))</tt>, unless it is already <tt>obj</tt> itself is already tagged explicitly with TBD113 as a whole<cref anchor="_6" source="—mlenders">Is it okay that TBD28259 might be omitted in that case?</cref>.</t>
        <t>Packed compression of queries is not specified, as apart from EDNS(0) (see <xref target="sec_edns"/>), they only
consist of one question most of the time, i.e., there is close to no redundancy.</t>
      </section>
      <section anchor="media-type-negotiation">
        <name>Media Type Negotiation</name>
        <t>A DNS client uses the media type "application/dns+cbor;packed=1" to negotiate (see, e.g.,
<xref target="RFC9110"/> or <xref section="5.5.4" sectionFormat="comma" target="RFC7252"/>) with the DNS server whether the server supports setup table tag TBD113.
If it does, it <bcp14>MAY</bcp14> request the response to be in packed value 1 (media type "application/dns+cbor;packed=1").
The server then <bcp14>SHOULD</bcp14> reply with the response in Packed CBOR, which it also signals with media type
"application/dns+cbor;packed=1".
Otherwise, both fall back to the implicit "packed=0".</t>
      </section>
      <section anchor="sec_pack-compression">
        <name>Compression</name>
        <t>The method of the compressor to construct the packing table, i.e., how the compression is applied, is out of scope of this document. Several potential compression algorithms were evaluated in [TBD].</t>
      </section>
    </section>
    <section anchor="implementation-status">
      <name>Implementation Status</name>
      <t>This section records the status of known implementations of the
protocol defined by this specification at the time of posting of
this Internet-Draft, and is based on a proposal described in
<xref target="RFC7942"/>.  The description of implementations in this section is
intended to assist the IETF in its decision processes in
progressing drafts to RFCs.  Please note that the listing of any
individual implementation here does not imply endorsement by the
IETF.  Furthermore, no effort has been spent to verify the
information presented here that was supplied by IETF contributors.
This is not intended as, and must not be construed to be, a
catalog of available implementations or their features.  Readers
are advised to note that other implementations may exist.</t>
      <t>According to <xref target="RFC7942"/>, "this will allow reviewers and working
groups to assign due consideration to documents that have the
benefit of running code, which may serve as evidence of valuable
experimentation and feedback that have made the implemented
protocols more mature.  It is up to the individual working groups
to use this information as they see fit".
<?line -20?>
      </t>
      <section anchor="python-decoderencoder">
        <name>Python decoder/encoder</name>
        <t>The authors of this document provide a <eref target="https://github.com/netd-tud/cbor4dns">decoder/encoder
implementation</eref> of both the unpacked and packed format
specified in this document in Python.</t>
        <dl>
          <dt>Level of maturity:</dt>
          <dd>
            <t>prototype</t>
          </dd>
          <dt>Version compatibility:</dt>
          <dd>
            <t>draft-lenders-dns-cbor-10</t>
          </dd>
          <dt>License:</dt>
          <dd>
            <t>MIT</t>
          </dd>
          <dt>Contact information:</dt>
          <dd>
            <t><tt>Martine Lenders &lt;martine.lenders@tu-dresden.de&gt;</tt></t>
          </dd>
          <dt>Last update of this information:</dt>
          <dd>
            <t>July 2024</t>
          </dd>
        </dl>
      </section>
      <section anchor="embedded-decoderencoder">
        <name>Embedded decoder/encoder</name>
        <t>The authors of this document provide a <eref target="https://github.com/RIOT-OS/RIOT/pull/19989">decoder/encoder
implementation</eref> of the unpacked format specified in this
document for the RIOT operating system. It can only encode queries and decode responses.</t>
        <dl>
          <dt>Level of maturity:</dt>
          <dd>
            <t>prototype</t>
          </dd>
          <dt>Version compatibility:</dt>
          <dd>
            <t>draft-lenders-dns-cbor-08</t>
          </dd>
          <dt>License:</dt>
          <dd>
            <t>MIT</t>
          </dd>
          <dt>Contact information:</dt>
          <dd>
            <t><tt>Martine Lenders &lt;martine.lenders@tu-dresden.de&gt;</tt></t>
          </dd>
          <dt>Last update of this information:</dt>
          <dd>
            <t>October 2023</t>
          </dd>
        </dl>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>TODO Security</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <section anchor="media-type">
        <name>Media Type Registration</name>
        <t>This document registers a media type for the serialization format of DNS messages in CBOR. It
follows the procedures specified in <xref target="RFC6838"/>.</t>
        <section anchor="applicationdnscbor">
          <name>"application/dns+cbor"</name>
          <t>Type name: application</t>
          <t>Subtype name: dns+cbor</t>
          <t>Required parameters: None</t>
          <t>Optional parameters: packed</t>
          <t>Encoding considerations: Must be encoded as using <xref target="RFC8949"/>. See [TBD-this-spec] for details.</t>
          <t>Security considerations: See <xref target="security-considerations"/> of this draft</t>
          <t>Interoperability considerations: TBD</t>
          <t>Published specification: [TBD-this-spec]</t>
          <t>Applications that use this media type: TBD DNS over X systems</t>
          <t>Fragment Identifier Considerations: TBD</t>
          <t>Additional information:</t>
          <t>   Deprecated alias names for this type: N/A</t>
          <t>   Magic number(s): N/A</t>
          <t>   File extension(s): dnsc</t>
          <t>   Macintosh file type code(s): none</t>
          <t>Person &amp; email address to contact for further information:
   IETF CBOR Working Group (cbor@ietf.org) or IETF Applications and Real-Time Area (art@ietf.org)</t>
          <t>Intended usage: COMMON</t>
          <t>Restrictions on Usage: None?</t>
          <t>Author: Martine S. Lenders <eref target="mailto:m.lenders@fu-berlin.de">m.lenders@fu-berlin.de</eref></t>
          <t>Change controller: IETF</t>
          <t>Provisional registrations? No</t>
        </section>
      </section>
      <section anchor="coap-content-format-registration">
        <name>CoAP Content-Format Registration</name>
        <t>IANA is requested to assign CoAP Content-Format ID for the new DNS message media
types in the "CoAP Content-Formats"
sub-registry, within the "CoRE Parameters" registry <xref target="RFC7252"/>, corresponding the
"application/dns+cbor" media type specified in <xref target="media-type"/>:</t>
        <section anchor="cf-app-d-c">
          <name>"application/dns+cbor"</name>
          <t>Media-Type: application/dns+cbor</t>
          <t>Encoding: -</t>
          <t>Id: TBD53</t>
          <t>Reference: [TBD-this-spec]</t>
        </section>
        <section anchor="applicationdnscborpacked1">
          <name>"application/dns+cbor;packed=1"</name>
          <t>Media-Type: application/dns+cbor;packed=1</t>
          <t>Encoding: -</t>
          <t>Id: TBD54</t>
          <t>Reference: [TBD-this-spec]</t>
        </section>
      </section>
      <section anchor="cbor-tags-registry">
        <name>CBOR Tags Registry</name>
        <t>In the registry "<xref section="CBOR Tags" relative="#cbor-tags" sectionFormat="bare" target="IANA.cbor-tags"/>" <xref target="IANA.cbor-tags"/>,
IANA is requested to allocate the tags defined in <xref target="tab-tag-values"/>.</t>
        <table anchor="tab-tag-values">
          <name>Values for Tag Numbers</name>
          <thead>
            <tr>
              <th align="right">Tag</th>
              <th align="left">Data Item</th>
              <th align="left">Semantics</th>
              <th align="left">Reference</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="right">TBD141</td>
              <td align="left">array</td>
              <td align="left">CBOR EDNS option record</td>
              <td align="left">draft-lenders-dns-cbor</td>
            </tr>
            <tr>
              <td align="right">TBD28259</td>
              <td align="left">any</td>
              <td align="left">Packed CBOR; implicit text string suffix sequence shared-item table</td>
              <td align="left">draft-lenders-dns-cbor</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="RFC1035">
          <front>
            <title>Domain names - implementation and specification</title>
            <author fullname="P. Mockapetris" initials="P." surname="Mockapetris"/>
            <date month="November" year="1987"/>
            <abstract>
              <t>This RFC is the revised specification of the protocol and format used in the implementation of the Domain Name System. It obsoletes RFC-883. This memo documents the details of the domain name client - server communication.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="13"/>
          <seriesInfo name="RFC" value="1035"/>
          <seriesInfo name="DOI" value="10.17487/RFC1035"/>
        </reference>
        <reference anchor="RFC3596">
          <front>
            <title>DNS Extensions to Support IP Version 6</title>
            <author fullname="S. Thomson" initials="S." surname="Thomson"/>
            <author fullname="C. Huitema" initials="C." surname="Huitema"/>
            <author fullname="V. Ksinant" initials="V." surname="Ksinant"/>
            <author fullname="M. Souissi" initials="M." surname="Souissi"/>
            <date month="October" year="2003"/>
            <abstract>
              <t>This document defines the changes that need to be made to the Domain Name System (DNS) to support hosts running IP version 6 (IPv6). The changes include a resource record type to store an IPv6 address, a domain to support lookups based on an IPv6 address, and updated definitions of existing query types that return Internet addresses as part of additional section processing. The extensions are designed to be compatible with existing applications and, in particular, DNS implementations themselves. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="88"/>
          <seriesInfo name="RFC" value="3596"/>
          <seriesInfo name="DOI" value="10.17487/RFC3596"/>
        </reference>
        <reference anchor="RFC5891">
          <front>
            <title>Internationalized Domain Names in Applications (IDNA): Protocol</title>
            <author fullname="J. Klensin" initials="J." surname="Klensin"/>
            <date month="August" year="2010"/>
            <abstract>
              <t>This document is the revised protocol definition for Internationalized Domain Names (IDNs). The rationale for changes, the relationship to the older specification, and important terminology are provided in other documents. This document specifies the protocol mechanism, called Internationalized Domain Names in Applications (IDNA), for registering and looking up IDNs in a way that does not require changes to the DNS itself. IDNA is only meant for processing domain names, not free text. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5891"/>
          <seriesInfo name="DOI" value="10.17487/RFC5891"/>
        </reference>
        <reference anchor="RFC6891">
          <front>
            <title>Extension Mechanisms for DNS (EDNS(0))</title>
            <author fullname="J. Damas" initials="J." surname="Damas"/>
            <author fullname="M. Graff" initials="M." surname="Graff"/>
            <author fullname="P. Vixie" initials="P." surname="Vixie"/>
            <date month="April" year="2013"/>
            <abstract>
              <t>The Domain Name System's wire protocol includes a number of fixed fields whose range has been or soon will be exhausted and does not allow requestors to advertise their capabilities to responders. This document describes backward-compatible mechanisms for allowing the protocol to grow.</t>
              <t>This document updates the Extension Mechanisms for DNS (EDNS(0)) specification (and obsoletes RFC 2671) based on feedback from deployment experience in several implementations. It also obsoletes RFC 2673 ("Binary Labels in the Domain Name System") and adds considerations on the use of extended labels in the DNS.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="75"/>
          <seriesInfo name="RFC" value="6891"/>
          <seriesInfo name="DOI" value="10.17487/RFC6891"/>
        </reference>
        <reference anchor="RFC7252">
          <front>
            <title>The Constrained Application Protocol (CoAP)</title>
            <author fullname="Z. Shelby" initials="Z." surname="Shelby"/>
            <author fullname="K. Hartke" initials="K." surname="Hartke"/>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <date month="June" year="2014"/>
            <abstract>
              <t>The Constrained Application Protocol (CoAP) is a specialized web transfer protocol for use with constrained nodes and constrained (e.g., low-power, lossy) networks. The nodes often have 8-bit microcontrollers with small amounts of ROM and RAM, while constrained networks such as IPv6 over Low-Power Wireless Personal Area Networks (6LoWPANs) often have high packet error rates and a typical throughput of 10s of kbit/s. The protocol is designed for machine- to-machine (M2M) applications such as smart energy and building automation.</t>
              <t>CoAP provides a request/response interaction model between application endpoints, supports built-in discovery of services and resources, and includes key concepts of the Web such as URIs and Internet media types. CoAP is designed to easily interface with HTTP for integration with the Web while meeting specialized requirements such as multicast support, very low overhead, and simplicity for constrained environments.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7252"/>
          <seriesInfo name="DOI" value="10.17487/RFC7252"/>
        </reference>
        <reference anchor="RFC8610">
          <front>
            <title>Concise Data Definition Language (CDDL): A Notational Convention to Express Concise Binary Object Representation (CBOR) and JSON Data Structures</title>
            <author fullname="H. Birkholz" initials="H." surname="Birkholz"/>
            <author fullname="C. Vigano" initials="C." surname="Vigano"/>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <date month="June" year="2019"/>
            <abstract>
              <t>This document proposes a notational convention to express Concise Binary Object Representation (CBOR) data structures (RFC 7049). Its main goal is to provide an easy and unambiguous way to express structures for protocol messages and data formats that use CBOR or JSON.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8610"/>
          <seriesInfo name="DOI" value="10.17487/RFC8610"/>
        </reference>
        <reference anchor="RFC8949">
          <front>
            <title>Concise Binary Object Representation (CBOR)</title>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <date month="December" year="2020"/>
            <abstract>
              <t>The Concise Binary Object Representation (CBOR) is a data format whose design goals include the possibility of extremely small code size, fairly small message size, and extensibility without the need for version negotiation. These design goals make it different from earlier binary serializations such as ASN.1 and MessagePack.</t>
              <t>This document obsoletes RFC 7049, providing editorial improvements, new details, and errata fixes while keeping full compatibility with the interchange format of RFC 7049. It does not create a new version of the format.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="94"/>
          <seriesInfo name="RFC" value="8949"/>
          <seriesInfo name="DOI" value="10.17487/RFC8949"/>
        </reference>
        <reference anchor="RFC9460">
          <front>
            <title>Service Binding and Parameter Specification via the DNS (SVCB and HTTPS Resource Records)</title>
            <author fullname="B. Schwartz" initials="B." surname="Schwartz"/>
            <author fullname="M. Bishop" initials="M." surname="Bishop"/>
            <author fullname="E. Nygren" initials="E." surname="Nygren"/>
            <date month="November" year="2023"/>
            <abstract>
              <t>This document specifies the "SVCB" ("Service Binding") and "HTTPS" DNS resource record (RR) types to facilitate the lookup of information needed to make connections to network services, such as for HTTP origins. SVCB records allow a service to be provided from multiple alternative endpoints, each with associated parameters (such as transport protocol configuration), and are extensible to support future uses (such as keys for encrypting the TLS ClientHello). They also enable aliasing of apex domains, which is not possible with CNAME. The HTTPS RR is a variation of SVCB for use with HTTP (see RFC 9110, "HTTP Semantics"). By providing more information to the client before it attempts to establish a connection, these records offer potential benefits to both performance and privacy.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9460"/>
          <seriesInfo name="DOI" value="10.17487/RFC9460"/>
        </reference>
        <reference anchor="I-D.ietf-cbor-packed">
          <front>
            <title>Packed CBOR</title>
            <author fullname="Carsten Bormann" initials="C." surname="Bormann">
              <organization>Universität Bremen TZI</organization>
            </author>
            <author fullname="Mikolai Gütschow" initials="M." surname="Gütschow">
              <organization>TUD Dresden University of Technology</organization>
            </author>
            <date day="3" month="March" year="2025"/>
            <abstract>
              <t>   The Concise Binary Object Representation (CBOR, RFC 8949 == STD 94)
   is a data format whose design goals include the possibility of
   extremely small code size, fairly small message size, and
   extensibility without the need for version negotiation.

   CBOR does not provide any forms of data compression.  CBOR data
   items, in particular when generated from legacy data models, often
   allow considerable gains in compactness when applying data
   compression.  While traditional data compression techniques such as
   DEFLATE (RFC 1951) can work well for CBOR encoded data items, their
   disadvantage is that the recipient needs to decompress the compressed
   form to make use of the data.

   This specification describes Packed CBOR, a set of CBOR tags and
   simple values that enable a simple transformation of an original CBOR
   data item into a Packed CBOR data item that is almost as easy to
   consume as the original CBOR data item.  A separate decompression
   step is therefore often not required at the recipient.


   // The present version (-14) adds additional stand-in items to the
   // previously updated implementation draft -13, with minor editorial
   // improvements.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-cbor-packed-14"/>
        </reference>
        <reference anchor="I-D.ietf-cbor-edn-literals">
          <front>
            <title>CBOR Extended Diagnostic Notation (EDN)</title>
            <author fullname="Carsten Bormann" initials="C." surname="Bormann">
              <organization>Universität Bremen TZI</organization>
            </author>
            <date day="8" month="January" year="2025"/>
            <abstract>
              <t>   This document formalizes and consolidates the definition of the
   Extended Diagnostic Notation (EDN) of the Concise Binary Object
   Representation (CBOR), addressing implementer experience.

   Replacing EDN's previous informal descriptions, it updates RFC 8949,
   obsoleting its Section 8, and RFC 8610, obsoleting its Appendix G.

   It also specifies and uses registry-based extension points, using one
   to support text representations of epoch-based dates/times and of IP
   addresses and prefixes.


   // (This cref will be removed by the RFC editor:) The present
   // revision (–16) addresses the first half of the WGLC comments,
   // except for the issues around the specific way how to best achieve
   // pluggable ABNF grammars for application-extensions.  It is
   // intended for use as a reference document for the mid-WGLC CBOR WG
   // interim meeting on 2025-01-08.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-cbor-edn-literals-16"/>
        </reference>
        <reference anchor="IANA.cbor-tags" target="https://www.iana.org/assignments/cbor-tags">
          <front>
            <title>Concise Binary Object Representation (CBOR) Tags</title>
            <author>
              <organization>IANA</organization>
            </author>
          </front>
        </reference>
        <reference anchor="RFC2119">
          <front>
            <title>Key words for use in RFCs to Indicate Requirement Levels</title>
            <author fullname="S. Bradner" initials="S." surname="Bradner"/>
            <date month="March" year="1997"/>
            <abstract>
              <t>In many standards track documents several words are used to signify the requirements in the specification. These words are often capitalized. This document defines these words as they should be interpreted in IETF documents. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="2119"/>
          <seriesInfo name="DOI" value="10.17487/RFC2119"/>
        </reference>
        <reference anchor="RFC8174">
          <front>
            <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
            <author fullname="B. Leiba" initials="B." surname="Leiba"/>
            <date month="May" year="2017"/>
            <abstract>
              <t>RFC 2119 specifies common key words that may be used in protocol specifications. This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the defined special meanings.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="8174"/>
          <seriesInfo name="DOI" value="10.17487/RFC8174"/>
        </reference>
        <reference anchor="RFC2782">
          <front>
            <title>A DNS RR for specifying the location of services (DNS SRV)</title>
            <author fullname="A. Gulbrandsen" initials="A." surname="Gulbrandsen"/>
            <author fullname="P. Vixie" initials="P." surname="Vixie"/>
            <author fullname="L. Esibov" initials="L." surname="Esibov"/>
            <date month="February" year="2000"/>
            <abstract>
              <t>This document describes a DNS RR which specifies the location of the server(s) for a specific protocol and domain. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2782"/>
          <seriesInfo name="DOI" value="10.17487/RFC2782"/>
        </reference>
        <reference anchor="RFC6838">
          <front>
            <title>Media Type Specifications and Registration Procedures</title>
            <author fullname="N. Freed" initials="N." surname="Freed"/>
            <author fullname="J. Klensin" initials="J." surname="Klensin"/>
            <author fullname="T. Hansen" initials="T." surname="Hansen"/>
            <date month="January" year="2013"/>
            <abstract>
              <t>This document defines procedures for the specification and registration of media types for use in HTTP, MIME, and other Internet protocols. This memo documents an Internet Best Current Practice.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="13"/>
          <seriesInfo name="RFC" value="6838"/>
          <seriesInfo name="DOI" value="10.17487/RFC6838"/>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="RFC4944">
          <front>
            <title>Transmission of IPv6 Packets over IEEE 802.15.4 Networks</title>
            <author fullname="G. Montenegro" initials="G." surname="Montenegro"/>
            <author fullname="N. Kushalnagar" initials="N." surname="Kushalnagar"/>
            <author fullname="J. Hui" initials="J." surname="Hui"/>
            <author fullname="D. Culler" initials="D." surname="Culler"/>
            <date month="September" year="2007"/>
            <abstract>
              <t>This document describes the frame format for transmission of IPv6 packets and the method of forming IPv6 link-local addresses and statelessly autoconfigured addresses on IEEE 802.15.4 networks. Additional specifications include a simple header compression scheme using shared context and provisions for packet delivery in IEEE 802.15.4 meshes. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="4944"/>
          <seriesInfo name="DOI" value="10.17487/RFC4944"/>
        </reference>
        <reference anchor="RFC6282">
          <front>
            <title>Compression Format for IPv6 Datagrams over IEEE 802.15.4-Based Networks</title>
            <author fullname="J. Hui" initials="J." role="editor" surname="Hui"/>
            <author fullname="P. Thubert" initials="P." surname="Thubert"/>
            <date month="September" year="2011"/>
            <abstract>
              <t>This document updates RFC 4944, "Transmission of IPv6 Packets over IEEE 802.15.4 Networks". This document specifies an IPv6 header compression format for IPv6 packet delivery in Low Power Wireless Personal Area Networks (6LoWPANs). The compression format relies on shared context to allow compression of arbitrary prefixes. How the information is maintained in that shared context is out of scope. This document specifies compression of multicast addresses and a framework for compressing next headers. UDP header compression is specified within this framework. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6282"/>
          <seriesInfo name="DOI" value="10.17487/RFC6282"/>
        </reference>
        <reference anchor="RFC7228">
          <front>
            <title>Terminology for Constrained-Node Networks</title>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <author fullname="M. Ersue" initials="M." surname="Ersue"/>
            <author fullname="A. Keranen" initials="A." surname="Keranen"/>
            <date month="May" year="2014"/>
            <abstract>
              <t>The Internet Protocol Suite is increasingly used on small devices with severe constraints on power, memory, and processing resources, creating constrained-node networks. This document provides a number of basic terms that have been useful in the standardization work for constrained-node networks.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7228"/>
          <seriesInfo name="DOI" value="10.17487/RFC7228"/>
        </reference>
        <reference anchor="RFC8484">
          <front>
            <title>DNS Queries over HTTPS (DoH)</title>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <author fullname="P. McManus" initials="P." surname="McManus"/>
            <date month="October" year="2018"/>
            <abstract>
              <t>This document defines a protocol for sending DNS queries and getting DNS responses over HTTPS. Each DNS query-response pair is mapped into an HTTP exchange.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8484"/>
          <seriesInfo name="DOI" value="10.17487/RFC8484"/>
        </reference>
        <reference anchor="RFC8499">
          <front>
            <title>DNS Terminology</title>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <author fullname="A. Sullivan" initials="A." surname="Sullivan"/>
            <author fullname="K. Fujiwara" initials="K." surname="Fujiwara"/>
            <date month="January" year="2019"/>
            <abstract>
              <t>The Domain Name System (DNS) is defined in literally dozens of different RFCs. The terminology used by implementers and developers of DNS protocols, and by operators of DNS systems, has sometimes changed in the decades since the DNS was first defined. This document gives current definitions for many of the terms used in the DNS in a single document.</t>
              <t>This document obsoletes RFC 7719 and updates RFC 2308.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8499"/>
          <seriesInfo name="DOI" value="10.17487/RFC8499"/>
        </reference>
        <reference anchor="RFC8618">
          <front>
            <title>Compacted-DNS (C-DNS): A Format for DNS Packet Capture</title>
            <author fullname="J. Dickinson" initials="J." surname="Dickinson"/>
            <author fullname="J. Hague" initials="J." surname="Hague"/>
            <author fullname="S. Dickinson" initials="S." surname="Dickinson"/>
            <author fullname="T. Manderson" initials="T." surname="Manderson"/>
            <author fullname="J. Bond" initials="J." surname="Bond"/>
            <date month="September" year="2019"/>
            <abstract>
              <t>This document describes a data representation for collections of DNS messages. The format is designed for efficient storage and transmission of large packet captures of DNS traffic; it attempts to minimize the size of such packet capture files but retain the full DNS message contents along with the most useful transport metadata. It is intended to assist with the development of DNS traffic- monitoring applications.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8618"/>
          <seriesInfo name="DOI" value="10.17487/RFC8618"/>
        </reference>
        <reference anchor="RFC8724">
          <front>
            <title>SCHC: Generic Framework for Static Context Header Compression and Fragmentation</title>
            <author fullname="A. Minaburo" initials="A." surname="Minaburo"/>
            <author fullname="L. Toutain" initials="L." surname="Toutain"/>
            <author fullname="C. Gomez" initials="C." surname="Gomez"/>
            <author fullname="D. Barthel" initials="D." surname="Barthel"/>
            <author fullname="JC. Zuniga" initials="JC." surname="Zuniga"/>
            <date month="April" year="2020"/>
            <abstract>
              <t>This document defines the Static Context Header Compression and fragmentation (SCHC) framework, which provides both a header compression mechanism and an optional fragmentation mechanism. SCHC has been designed with Low-Power Wide Area Networks (LPWANs) in mind.</t>
              <t>SCHC compression is based on a common static context stored both in the LPWAN device and in the network infrastructure side. This document defines a generic header compression mechanism and its application to compress IPv6/UDP headers.</t>
              <t>This document also specifies an optional fragmentation and reassembly mechanism. It can be used to support the IPv6 MTU requirement over the LPWAN technologies. Fragmentation is needed for IPv6 datagrams that, after SCHC compression or when such compression was not possible, still exceed the Layer 2 maximum payload size.</t>
              <t>The SCHC header compression and fragmentation mechanisms are independent of the specific LPWAN technology over which they are used. This document defines generic functionalities and offers flexibility with regard to parameter settings and mechanism choices. This document standardizes the exchange over the LPWAN between two SCHC entities. Settings and choices specific to a technology or a product are expected to be grouped into profiles, which are specified in other documents. Data models for the context and profiles are out of scope.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8724"/>
          <seriesInfo name="DOI" value="10.17487/RFC8724"/>
        </reference>
        <reference anchor="RFC8824">
          <front>
            <title>Static Context Header Compression (SCHC) for the Constrained Application Protocol (CoAP)</title>
            <author fullname="A. Minaburo" initials="A." surname="Minaburo"/>
            <author fullname="L. Toutain" initials="L." surname="Toutain"/>
            <author fullname="R. Andreasen" initials="R." surname="Andreasen"/>
            <date month="June" year="2021"/>
            <abstract>
              <t>This document defines how to compress Constrained Application Protocol (CoAP) headers using the Static Context Header Compression and fragmentation (SCHC) framework. SCHC defines a header compression mechanism adapted for Constrained Devices. SCHC uses a static description of the header to reduce the header's redundancy and size. While RFC 8724 describes the SCHC compression and fragmentation framework, and its application for IPv6/UDP headers, this document applies SCHC to CoAP headers. The CoAP header structure differs from IPv6 and UDP, since CoAP uses a flexible header with a variable number of options, themselves of variable length. The CoAP message format is asymmetric: the request messages have a header format different from the format in the response messages. This specification gives guidance on applying SCHC to flexible headers and how to leverage the asymmetry for more efficient compression Rules.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8824"/>
          <seriesInfo name="DOI" value="10.17487/RFC8824"/>
        </reference>
        <reference anchor="RFC9110">
          <front>
            <title>HTTP Semantics</title>
            <author fullname="R. Fielding" initials="R." role="editor" surname="Fielding"/>
            <author fullname="M. Nottingham" initials="M." role="editor" surname="Nottingham"/>
            <author fullname="J. Reschke" initials="J." role="editor" surname="Reschke"/>
            <date month="June" year="2022"/>
            <abstract>
              <t>The Hypertext Transfer Protocol (HTTP) is a stateless application-level protocol for distributed, collaborative, hypertext information systems. This document describes the overall architecture of HTTP, establishes common terminology, and defines aspects of the protocol that are shared by all versions. In this definition are core protocol elements, extensibility mechanisms, and the "http" and "https" Uniform Resource Identifier (URI) schemes.</t>
              <t>This document updates RFC 3864 and obsoletes RFCs 2818, 7231, 7232, 7233, 7235, 7538, 7615, 7694, and portions of 7230.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="97"/>
          <seriesInfo name="RFC" value="9110"/>
          <seriesInfo name="DOI" value="10.17487/RFC9110"/>
        </reference>
        <reference anchor="RFC9619">
          <front>
            <title>In the DNS, QDCOUNT Is (Usually) One</title>
            <author fullname="R. Bellis" initials="R." surname="Bellis"/>
            <author fullname="J. Abley" initials="J." surname="Abley"/>
            <date month="July" year="2024"/>
            <abstract>
              <t>This document updates RFC 1035 by constraining the allowed value of the QDCOUNT parameter in DNS messages with OPCODE = 0 (QUERY) to a maximum of one, and it specifies the required behavior when values that are not allowed are encountered.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9619"/>
          <seriesInfo name="DOI" value="10.17487/RFC9619"/>
        </reference>
        <reference anchor="I-D.ietf-core-dns-over-coap">
          <front>
            <title>DNS over CoAP (DoC)</title>
            <author fullname="Martine Sophie Lenders" initials="M. S." surname="Lenders">
              <organization>TUD Dresden University of Technology</organization>
            </author>
            <author fullname="Christian Amsüss" initials="C." surname="Amsüss">
         </author>
            <author fullname="Cenk Gündoğan" initials="C." surname="Gündoğan">
              <organization>NeuralAgent GmbH</organization>
            </author>
            <author fullname="Thomas C. Schmidt" initials="T. C." surname="Schmidt">
              <organization>HAW Hamburg</organization>
            </author>
            <author fullname="Matthias Wählisch" initials="M." surname="Wählisch">
              <organization>TUD Dresden University of Technology &amp; Barkhausen Institut</organization>
            </author>
            <date day="3" month="April" year="2025"/>
            <abstract>
              <t>   This document defines a protocol for exchanging DNS messages over the
   Constrained Application Protocol (CoAP).  These CoAP messages can be
   protected by DTLS-Secured CoAP (CoAPS) or Object Security for
   Constrained RESTful Environments (OSCORE) to provide encrypted DNS
   message exchange for constrained devices in the Internet of Things
   (IoT).

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-core-dns-over-coap-14"/>
        </reference>
        <reference anchor="RFC6762">
          <front>
            <title>Multicast DNS</title>
            <author fullname="S. Cheshire" initials="S." surname="Cheshire"/>
            <author fullname="M. Krochmal" initials="M." surname="Krochmal"/>
            <date month="February" year="2013"/>
            <abstract>
              <t>As networked devices become smaller, more portable, and more ubiquitous, the ability to operate with less configured infrastructure is increasingly important. In particular, the ability to look up DNS resource record data types (including, but not limited to, host names) in the absence of a conventional managed DNS server is useful.</t>
              <t>Multicast DNS (mDNS) provides the ability to perform DNS-like operations on the local link in the absence of any conventional Unicast DNS server. In addition, Multicast DNS designates a portion of the DNS namespace to be free for local use, without the need to pay any annual fee, and without the need to set up delegations or otherwise configure a conventional DNS server to answer for those names.</t>
              <t>The primary benefits of Multicast DNS names are that (i) they require little or no administration or configuration to set them up, (ii) they work when no infrastructure is present, and (iii) they work during infrastructure failures.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6762"/>
          <seriesInfo name="DOI" value="10.17487/RFC6762"/>
        </reference>
        <reference anchor="RFC7942">
          <front>
            <title>Improving Awareness of Running Code: The Implementation Status Section</title>
            <author fullname="Y. Sheffer" initials="Y." surname="Sheffer"/>
            <author fullname="A. Farrel" initials="A." surname="Farrel"/>
            <date month="July" year="2016"/>
            <abstract>
              <t>This document describes a simple process that allows authors of Internet-Drafts to record the status of known implementations by including an Implementation Status section. This will allow reviewers and working groups to assign due consideration to documents that have the benefit of running code, which may serve as evidence of valuable experimentation and feedback that have made the implemented protocols more mature.</t>
              <t>This process is not mandatory. Authors of Internet-Drafts are encouraged to consider using the process for their documents, and working groups are invited to think about applying the process to all of their protocol specifications. This document obsoletes RFC 6982, advancing it to a Best Current Practice.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="205"/>
          <seriesInfo name="RFC" value="7942"/>
          <seriesInfo name="DOI" value="10.17487/RFC7942"/>
        </reference>
      </references>
    </references>
    <?line 869?>

<section anchor="examples">
      <name>Examples</name>
      <section anchor="sec_query-examples">
        <name>DNS Queries</name>
        <t>A DNS query of the record <tt>AAAA</tt> in class <tt>IN</tt> for name "example.org" is
represented in CBOR extended diagnostic notation (EDN) (see <xref section="8" sectionFormat="of" target="RFC8949"/> and <xref section="G" sectionFormat="of" target="RFC8610"/>) as follows:</t>
        <sourcecode type="edn"><![CDATA[
[["example", "org"]]
]]></sourcecode>
        <t>A query of an <tt>A</tt> record for the same name is represented as</t>
        <sourcecode type="edn"><![CDATA[
[["example", "org", 1]]
]]></sourcecode>
        <t>A query of <tt>ANY</tt> record for that name is represented as</t>
        <sourcecode type="edn"><![CDATA[
[["example", "org", 255, 255]]
]]></sourcecode>
      </section>
      <section anchor="sec_response-examples">
        <name>DNS Responses</name>
        <t>The responses to the examples provided in <xref target="sec_query-examples"/> are shown
below. We use the CBOR extended diagnostic notation (EDN) (see <xref target="I-D.ietf-cbor-edn-literals"/> and <xref section="G" sectionFormat="of" target="RFC8610"/>),
most notably the "ip" extension to represent binary IP addresses as a IP address app-string literal.</t>
        <t>To represent an <tt>AAAA</tt> record with TTL 300 seconds for the IPv6 address 2001:db8::1, a minimal
response to <tt>[["example", "org"]]</tt> could be</t>
        <sourcecode type="edn"><![CDATA[
[[[300, ip'2001:db8::1']]]
]]></sourcecode>
        <t>In this case, the name is derived from the query.</t>
        <t>If the name or the context is required, the following response would also
be valid:</t>
        <sourcecode type="edn"><![CDATA[
[[["example", "org", 300, ip'2001:db8::1']]]
]]></sourcecode>
        <t>If the query can not be mapped to the response for some reason, a response
would look like:</t>
        <sourcecode type="edn"><![CDATA[
[["example", "org"], [[300, ip'2001:db8::1']]]
]]></sourcecode>
        <t>To represent a minimal response of an <tt>A</tt> record with TTL 3600 seconds for the IPv4 address
192.0.2.1, a minimal response to <tt>[["example", "org", 1]]</tt> could be</t>
        <sourcecode type="edn"><![CDATA[
[[[300, ip'192.0.2.1']]]
]]></sourcecode>
        <t>Note that here also the 1 of record type <tt>A</tt> can be elided, as this record
type is specified in the question section.</t>
        <t>Lastly, a response to <tt>[["example", "org", 255, 255]]</tt> could be</t>
        <sourcecode type="edn"><![CDATA[
[
  # PTR (12) question for "example.org"
  [
    # appends 0 => ["example", "org"] to virtual packing table
    "example",
    # appends 1 => ["org"] to virtual packing table
    "org",
    12
  ],
  # Answer section:
  [[
    # PTR (12) for "example.org"
    # (both elided since they are the same as in question)
    # is "_coap._udp.local" with TTL 3600
    3600,
    # appends 2 => ["_coap", "_udp", "local"] to virtual packing table
    "_coap",
    # appends 3 => ["_udp", "local"] to virtual packing table
    "_udp",
    # appends 4 => ["local"] to virtual packing table
    "local"
  ]],
  # Authority section:
  [
    [
      # NS (2) for "example.org"
      # (name elided since its the same as in question)
      # is "ns1.example.org" with TTL 3600
      3600, 2,
      # appends 5 => ["ns1", simple(0)] to virtual packing table
      "ns1", simple(0)  # expands to ["example", "org"]
    ],
    [
      # NS (2) for "example.org"
      # (name elided since its the same as in question)
      # is "ns2.example.org" with TTL 3600
      3600, 2
      # appends 6 => ["ns2", simple(0)] to virtual packing table
      "ns2", simple(0)  # expands to ["example", "org"]
    ]
  ],
  # Additional section
  [
    [
      # AAAA (28) for "_coap._udp.local"
      # is 2001:db8::1 with TTL 3600
      simple(2),    # expands to ["_coap", "_udp", "local"]
      3600, 28, ip'2001:db8::1'
    ],
    [
      # AAAA (28) for "_coap._udp.local"
      # is 2001:db8::2 with TTL 3600
      simple(2),    # expands to ["_coap", "_udp", "local"]
      3600, 28, ip'2001:db8::2'
    ],
    [
      # AAAA (28) for "ns1.example.org"
      # is 2001:db8::35 with TTL 3600
      simple(5),    # expands to ["ns1", ["example", "org"]]
      3600, 28, ip'2001:db8::35'
    ],
    [
      # AAAA (28) for "ns2.example.org"
      # is 2001:db8::3535 with TTL 3600
      simple(6),    # expands to ["ns2", ["example", "org"]
      3600, 28, ip'2001:db8::3535'
    ]
  ]
]
]]></sourcecode>
        <t>This response advertises two local CoAP servers (identified by service name <tt>_coap._udp.local</tt>) at
2001:db8::1 and 2001:db8::2 and two nameservers for the example.org domain, ns1.example.org at
2001:db8::35 and ns2.example.org at 2001.db8::3535. Each of the transmitted records has a TTL of
3600 seconds.
Note the use of name compression (see <xref target="sec_name-compression"/>) in this example.</t>
      </section>
    </section>
    <section anchor="sec_comparison-to-classic-dns">
      <name>Comparison to Classic DNS Wire Format</name>
      <t><xref target="tab-cbor-comparison"/> shows a comparison between the classic DNS wire format and the
application/dns+cbor format. Note that the worst case results typically appear only rarely in DNS.
The classic DNS format is preferred in those cases. A key for which configuration was used in which
case can be seen in <xref target="tab-cbor-comparison-key"/>. Any name label that is longer than 23 bytes adds
a name overhead of 1 byte to its CBOR type header.<cref anchor="_10" source="—mlenders">TBD: Also add structured RRs?.</cref></t>
      <table anchor="tab-cbor-comparison">
        <name>Comparison of application/dns+cbor to classic DNS format.</name>
        <thead>
          <tr>
            <th align="left" rowspan="2">Item</th>
            <th align="right" rowspan="2">Classic DNS format [bytes]</th>
            <th align="center" colspan="3">application/dns+cbor [bytes]</th>
          </tr>
          <tr>
            <th align="right">best case</th>
            <th align="right">realistic worst case</th>
            <th align="right">theoretical worst case</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Header (ID &amp; Flags)</td>
            <td align="right">4</td>
            <td align="right">1</td>
            <td align="right">4</td>
            <td align="right">4</td>
          </tr>
          <tr>
            <td align="left">Count fields</td>
            <td align="right">2</td>
            <td align="right">1</td>
            <td align="right">3</td>
            <td align="right">3</td>
          </tr>
          <tr>
            <td align="left">Question section</td>
            <td align="right">6 + name len.</td>
            <td align="right">2 + name len.</td>
            <td align="right">6 + name len. + name overhead</td>
            <td align="right">9 + name len. + name overhead</td>
          </tr>
          <tr>
            <td align="left">Standard RR</td>
            <td align="right">12 + name len. + rdata len.</td>
            <td align="right">3        <br/>
 + rdata len.</td>
            <td align="right">14 + name len. + rdata len. + name overhead</td>
            <td align="right">17 + name len. + rdata len. + name overhead</td>
          </tr>
          <tr>
            <td align="left">Standard RR with name rdata</td>
            <td align="right">12 + name len. + rdata len.</td>
            <td align="right">4</td>
            <td align="right">14 + name len. + rdata len. + name overheads</td>
            <td align="right">16 + name len. + rdata len. + name overheads</td>
          </tr>
          <tr>
            <td align="left">EDNS Opt Pseudo-RR</td>
            <td align="right">11 + options</td>
            <td align="right">2 + options</td>
            <td align="right">6 + options</td>
            <td align="right">14 + options</td>
          </tr>
          <tr>
            <td align="left">EDNS Option</td>
            <td align="right">4 + value len.</td>
            <td align="right">2 + value len.</td>
            <td align="right">4 + value len.</td>
            <td align="right">6 + value len.</td>
          </tr>
        </tbody>
      </table>
      <table anchor="tab-cbor-comparison-key">
        <name>Configuration key for     <xref target="tab-cbor-comparison"/>
.</name>
        <thead>
          <tr>
            <th align="left" rowspan="2">Item</th>
            <th align="center" colspan="3">application/dns+cbor configuration</th>
          </tr>
          <tr>
            <th align="right">best case</th>
            <th align="right">realistic worst case</th>
            <th align="right">theoretical worst case</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Header (ID &amp; Flags)</td>
            <td align="right">Flags elided</td>
            <td align="right">QR, Opcode, AA, TC, or RD are set</td>
            <td align="right">QR, Opcode, AA, TC, or RD are set</td>
          </tr>
          <tr>
            <td align="left">Count fields</td>
            <td align="right">Encoded in CBOR array header</td>
            <td align="right">Encoded in CBOR array header,        <br/>
&gt;255 records in section</td>
            <td align="right">Encoded in CBOR array header,        <br/>
&gt;255 records in section</td>
          </tr>
          <tr>
            <td align="left">Question section</td>
            <td align="right">Class, type, and name elided</td>
            <td align="right">Type &gt; 255,        <br/>
label len. &gt; 23</td>
            <td align="right">Type &gt; 255,        <br/>
Class &gt; 255,        <br/>
label len. &gt; 23</td>
          </tr>
          <tr>
            <td align="left">Standard RR</td>
            <td align="right">Class, type, and name elided,        <br/>
rdata len. &lt; 24</td>
            <td align="right">Type &gt; 255,        <br/>
label len. &gt; 23        <br/>
rdata len. &gt; 255</td>
            <td align="right">Type &gt; 255,        <br/>
Class &gt; 255,        <br/>
label len. &gt; 23        <br/>
rdata len. &gt; 255</td>
          </tr>
          <tr>
            <td align="left">Standard RR with name rdata</td>
            <td align="right">Class, type, and name elided,        <br/>
simple(i) with i &lt; 16</td>
            <td align="right">Type &gt; 255,        <br/>
label len. &gt; 23        <br/>
name uncompressed</td>
            <td align="right">Type &gt; 255,        <br/>
Class &gt; 255,        <br/>
label len. &gt; 23        <br/>
name uncompressed</td>
          </tr>
          <tr>
            <td align="left">EDNS Opt Pseudo-RR</td>
            <td align="right">All EDNS(0) fields elided</td>
            <td align="right">Rcode &lt; 24,        <br/>
DO flag set,        <br/>
            </td>
            <td align="right">UDP payload        <br/>
len. &gt; 255        <br/>
Rcode &gt; 255        <br/>
Version &gt; 255        <br/>
DO flag set</td>
          </tr>
          <tr>
            <td align="left">EDNS Option</td>
            <td align="right">Code &lt; 24        <br/>
Length &lt; 24</td>
            <td align="right">Code &lt; 24        <br/>
Length &gt; 255</td>
            <td align="right">Code &gt; 255        <br/>
Length &gt; 255</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="change-log">
      <name>Change Log</name>
      <section anchor="since-draft-lenders-dns-cbor-12">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-12">draft-lenders-dns-cbor-12</eref></name>
        <ul spacing="normal">
          <li>
            <t>Fix bug in packed examples</t>
          </li>
          <li>
            <t>Improve compression examples for clarity</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-11">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-11">draft-lenders-dns-cbor-11</eref></name>
        <ul spacing="normal">
          <li>
            <t>Update repo links to cbor-wg org in draft</t>
          </li>
          <li>
            <t><tt>s/CBOR-packed/Packed CBOR/</tt></t>
          </li>
          <li>
            <t>Small pass on wording</t>
          </li>
          <li>
            <t>Remove commented-out parts</t>
          </li>
          <li>
            <t>Make name compression be based on Packed CBOR</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-10">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-10">draft-lenders-dns-cbor-10</eref></name>
        <ul spacing="normal">
          <li>
            <t>Address IANA #1392416 early review</t>
          </li>
          <li>
            <t>Fix external section references</t>
          </li>
          <li>
            <t>Update implementation status</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-09">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-09">draft-lenders-dns-cbor-09</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add recommendation on label encoding</t>
          </li>
          <li>
            <t>Provide extension points
            </t>
            <ul spacing="normal">
              <li>
                <t>Mark dns-rr specifically as extension point</t>
              </li>
              <li>
                <t>Provide extension points for parameter values (options and svc-params)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>Point out CBOR-packed needs to be unpacked when identifying names</t>
          </li>
          <li>
            <t>Distinguish from C-DNS <xref target="RFC8618"/></t>
          </li>
          <li>
            <t>State objectives in introduction</t>
          </li>
          <li>
            <t>Fix nits and typos</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-08">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-08">draft-lenders-dns-cbor-08</eref></name>
        <ul spacing="normal">
          <li>
            <t>Clarify why question section was designed the way it is</t>
          </li>
          <li>
            <t>Add answer section to queries for Known Answers in mDNS</t>
          </li>
          <li>
            <t>Express names as sequence of labels</t>
          </li>
          <li>
            <t>Provide dedicated types for more structured RDATA</t>
          </li>
          <li>
            <t>Add RFC1035-like name compression</t>
          </li>
          <li>
            <t>Add switching boolean to query message to explicitly have question present in response</t>
          </li>
          <li>
            <t>Make EDNS options a map</t>
          </li>
          <li>
            <t>Update examples and comparison table in appendices</t>
          </li>
          <li>
            <t>Update implementation section</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-07">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-07">draft-lenders-dns-cbor-07</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add <xref target="sec_comparison-to-classic-dns"/> with comparison to classic DNS wire format</t>
          </li>
          <li>
            <t>"wire format" -&gt; "classic DNS wire format"</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-06">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-06">draft-lenders-dns-cbor-06</eref></name>
        <ul spacing="normal">
          <li>
            <t>Fixes wording and spelling mistakes</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-05">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-05">draft-lenders-dns-cbor-05</eref></name>
        <ul spacing="normal">
          <li>
            <t>Fix <xref target="cf-app-d-c"/> title</t>
          </li>
          <li>
            <t>Amend for capability to carry more than one question</t>
          </li>
          <li>
            <t>Hint at future of name compression in later draft versions</t>
          </li>
          <li>
            <t>Use canonical name for CBOR-packed</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-04">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-04">draft-lenders-dns-cbor-04</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add Implementation Status section</t>
          </li>
          <li>
            <t>Remove int as representation for rdata</t>
          </li>
          <li>
            <t>Add note on representation of more structured rdata</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-03">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-03">draft-lenders-dns-cbor-03</eref></name>
        <ul spacing="normal">
          <li>
            <t>Provide format description for EDNS OPT Pseudo-RRs</t>
          </li>
          <li>
            <t>Simplify CDDL to more idiomatic style</t>
          </li>
          <li>
            <t>Remove DNS transaction IDs</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-02">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-02">draft-lenders-dns-cbor-02</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add Discussion section and note on compression</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-01">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-01">draft-lenders-dns-cbor-01</eref></name>
        <ul spacing="normal">
          <li>
            <t>Use MIME type parameter for packed instead of own MIME type</t>
          </li>
          <li>
            <t>Update definitions to accommodate for TID and flags, as well as more sections in query</t>
          </li>
          <li>
            <t>Clarify fallback to wire-format</t>
          </li>
        </ul>
      </section>
      <section anchor="since-draft-lenders-dns-cbor-00">
        <name>Since <eref target="https://datatracker.ietf.org/doc/html/draft-lenders-dns-cbor-00">draft-lenders-dns-cbor-00</eref></name>
        <ul spacing="normal">
          <li>
            <t>Add support for DNS transaction IDs</t>
          </li>
          <li>
            <t>Name and Address compression utilizing CBOR-packed</t>
          </li>
          <li>
            <t>Minor fixes to CBOR EDN and CDDL</t>
          </li>
        </ul>
      </section>
    </section>
    <section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>TODO acknowledge.</t>
    </section>
  </back>
  <!-- ##markdown-source:
H4sIAAAAAAAAA+V963rbRpbgfzxFLdNfR0oTlEhdLKl9aUVSYu1YtluSk+51
uyOQAEWMQYADgJaVtOfbh9gH2B/zJDtvsk+y51aFKgC8yE56f0x+xCJQqDp1
6tzr1Cnf970yLpPoSHWO1UmWjuIiUt/GaZDfq1fDf41GpbqMZnlURGkZlHGW
qo2Tb19dbqpsrE5fXqmLqCiC26joeMFwmEcfoJ8wLf4wGmZ5xxsFZXSb5fdH
qihDzwuzURpMYagwD8aln0RpGOWFD+19bO/3d7x0Ph1G+ZEXwpdH3ihLYdxi
XhypMp9HHvS+4xXz4TQuCgClvJ9BZ+dn1995QR4FOIXZLIlHBCdAdJfl72/z
bD47Ugiz9z66h0fhkad8dZ6WUZ5GpX+KsOATagL/wqy8D1E6h/EV/Gd3gL95
0B+h6zi9Vd/jW3o+DeLkSOE8/hRH5biX5bf0PMhHE4BsUpaz4mhrC5vho/hD
1NPttvDB1jDP7opoC3vY6vDQcTmZD+Fjws7dLb1DdPHrBHBUlFbf0qzH3/Xi
zHyw1Y7x3qScJh3PC+blJMsJL2o8TxJepYsgL+M0UlfZbBJH6gV/TEMD0Efq
+s2pOgXKCKNUvUlhQnkRl/dIGNfRaJJmSXZ7zygQyrh+o9vT46LMowjgfx4l
00mWlD/Dg57qb9PLEXR15DQfZSEAdepv97f3D+XJPC2Rur6P8mmQ8mARL8SU
ge/JlP9Uzv2QO+uFEU2UJ3kS5EUJE/g2wy7SanZmRv/5H6X6No+m0Oj6f5w7
kL/OinIcjCZqZ2d7d9cGnD9w4B4c7OwtgXs2yVJo94fdQ3930PcH/QN/f+dw
0LcnNQqG2Z/Kn2MmLmexrifZNCjUSU9djSbTOCz1TII0/pkYAhB9/KN6HkyH
cyFN6bXsFfzJnybBnT/hBi6WLoKynMTQ/4//+R+TJIb2DyMD9Xv1bZC/nwRz
4GfgvQJkzrxcQBxLGv+2JNO7CyKeXY1cvBSpo4S5oUy4/O6kv72zB2IsLfgn
LOz+kQrgP/69d3DYP1JxmMrvffodmfaPBnsDWM0smPHvg/3+NvwOw0R+H+4e
sizh34e7+/C++DAawu9z/5QkB8vMWTB6H4XcWH402sDAfhKDvAuSgsDAFscv
j3v0tgxuUb7C/z0vTse1me4e7u4eqf0ku5sFqcxmcADQx7PJSM9mcICzgYWC
3gCvMsuD3QP4NMwm+ufhIeHMabPfx28NZg4eDeAbWAHp++AAfyOm/OrhYR/R
hVLPL2Dt0jIeyeeH+30Y499CWma/72AiyyMSfBlQqI89Imwjz/N83wcqBOCD
Uel515O4wBdz4N9SFbNoFI/jqFABQDEFBJcKdFOgGE9aC05FC6p5AVrBKyfR
err0l19ohT596sG4kZrl8RQbz+b5LINvAZIyU++jaOaOUkyDJFFxKkgPQNCF
CpQZKryiJ1MCjg4ToN2vUNflWTgf4ZCed97+GcFireGnT12F80ji9D2omvso
B5l6rwD6Mo9hJvhuFtwnWRCqIv4ZoAJcjHMQFwi0l6XJPeBsHN2pyTwFXgoL
NbwHhdVT6iwd5fezEgbHWUGPWTJH2LqqmIMwBTGDz3Gd1PPr69dXauM0e76J
AAIxffoEYsczDU6y49f4/kTejxBuBDSJADDAnoU4gbOcwMJFH0cRAFDiaifx
NC67KgKtr+4mIDvi6SxB+V2iip9ARzAQrj6AinaHAXP/Rfbj6+OX6vz18xMc
HnmC4FNXJ/wEiRYg8gi5QsS42t5xAip3fgvdhNmMaIFwXDT6hi+F+9p6BqSP
ATjA++3UUBWgH6GFBbgDS0Co5eL6TdGtNSwAhCRUw0gFH7I4BHwspKnvnA+h
+yE1oAEmMcyDZE+pkqwo1HSelDFYYoRsJKH3URJPsixEGsEWPe95lI6irnCV
xqswFS0QUMx8BB24ENf5DVZvGKXROB7FQdJ7KPfCPy3s+yAz2HCwggllIXze
U8dhGGMbQPt9V6l5mkYjHAH6ggFxYmkIUksZaQvdgQGL2i2ezSLEkjtN4Jnr
DICLCJ3ZvITJRIgLIl+ZJZu9uILALSpIgbuyk65XOhgBDZA5aLmIwjhQ12DU
akInpEgPAeICzKPS/07kHdMqtzkBhL/MyqjLKwaw5SSzgjTDv53ljD7SKkdF
bf1Ssqy76sTH54hNkNHIIfwAemOhGLM4iZPIdJuBiEuBdX8GtIDsZgkkpBe5
w+Bc5oWQ4zgYlTbEiHrzmfkEug8zFZeFTaEAVjadAgI+BMk8qpg1JbEHSAnC
UKaJvY6yJAHSYb4qolmQg8kOqnaYQIO7SYwfQ7M8Ah5GfgiB2rMpAanh6DLh
5vgNwvSaVDwhTdOeqH1E2vPsDqRY3mXCQDEIAJGgxMWlZYvTMP4Qh/MgcUnM
Iw0kuA2jYpTHQwbcpSBcX8R3WoxrSxzEU0LbLM9gAJw9sVEKI9AC1Dh9ESTY
BUgk5DQW8YgOEUQ9ZnCEAVwomCqQKLh898i1tLSA8OwOf2XEtGDHFEee1++h
ziHubCU/tWHButn1Bj31ClQCif8Nw6+bQH5REtJX2Mu/zaM8FuKCec3QWS3q
Xe301GvCB/YVBcU9Ts/oFyIcBzGMSZxFQUjKUh8m5o+B/FkwsxrXgnAhDKbH
zS6+9HZtOJiLAe9CrvQ5kbQDi8yz6pfF4zISdIfuofVxDdZELN6gRx+hCw1A
ztMivk2JxsroFqkWDQSSguktkHD0sTQ/gjwP7oEZonLU2ySmAXYOkfVCEP7c
iWdZU0TMZMeoDs6hiHIgpU6Xf41ANaVlhzCjOhvwaJPNEGyzoHcyL7Txyirc
rMA9c4U2M2gN9cqQFLMEPXF4kKr5DJ2ZYFrZQDA4m4F5hLob6IQ6oq7tdZDZ
2YaNsKEW7Ba8sCRayxEzvTl9re5gmdEk6IySABZqRG+5iw6MmaNdAkqmxvik
upDnkYBLWCsSjlPSH7iiqhNU0ZctRJVA10FENkBDS85aJwCmxe7o4Ozb18K1
VaWn9xHYPFkOPNq5eHN1jeuN/6qXr+jvy7M/vzm/PDvFv6+eH794Yf7wpMXV
81dvXpxWf1Vfnry6uDh7ecofw1PlPPI6F8d/1QT16vX1+auXxy86TemJtMXy
DYk+B04paXKeI3G/PXn9f/53fxem+d/AqRn0+4ewjPzjoP9oF36gmcqjkaHN
P0FQ3HuwCFGAwhWlCKzzLC5B6XdpDSbZXapQ5wG6vnmLmHl3pB4PR7P+7lN5
gBN2HmqcOQ8JZ80njY8ZiS2PWoYx2HSe1zDtwnv8V+e3xrv18PGzBENYfv/g
2VMPpREJINeUA1FUo1wKX256nmtDkKaWD5kiqTMWTY45ohVuD8z8hFuB+z0V
UtZE4dpt2D0IdSJyaAz+S3pbTnqeMwbKA7BKwL4SVcf2NTXVn9KMtG2IGmQs
bf35zB0TqIKWHLUtGFZpCZQEEhkc5bBlXOMxRY4/pdV9iBIBX5JtMMvyclnv
5yzXigLYIuT+K2FKtqsl8Ag3YVygPp7HxQS+MKKWVAl+oA066WMEIhZGngZk
UJMsjaoObVBRpMEcygysNUTWaJLFI+AQsLhZ4sinjvUP7YbsHbChUaBQ1Qa6
9h9O0dU4NauiXgQAP0K9cXJ6+oJ9B/DRUXqBeQ0IDtAugFWx+8JlOPtYYhgT
sBIHgEFAxEiB4W1iCFGYkgj893//d44iWdJXPaGYC2Nli/7WaMD23i9H+IX6
ahzfHtFnBZhSuCPwpOM6U4wM8LfAuKfl+bNle1waGwFNKphd55PnnY+7pHyC
FOMGQYEefuDoLVglpOWhy1nEIDL1Ns3miNQu0ng8Bi+LhyBD2Vi8aCxK9CMK
cfQxSMUhGCtIEtpPaWpSMDR6tz0OgDSVZLueFXIPkjtkGZjSDBzdGKBBK+gr
cJemoNvUSzT46lGgr4podBRSA59cCUCetGfPoi57hugMFREsKngNSIwZkCng
YQrchYZVjJHPTduEKozRB2zI8iAKPewnZS5H87KEEdHC04gJKxiYRGPQuQE5
7h2hVgxFd0DnShyhJiBvdLNOt4MNbxBI6+FbevruxhjiYUXgqRB4z/tR7JUW
PsT4A5oqxj6kZWsOi592xgnFFewOOoi8wJ6oawBFhs7ENMuyUrfu9Mg8qU0Z
8BlNZ+W94B1g6dzwt8Gw0MuFHJEEwygBugMRxC4ODg79RQlKU8Y3BdkkGKhF
ekX4oU0ieUQ/RkER+TFtm8Xo/rTaXmllMTXlmouNuGZ3kZioKBX7OdZTASKK
YiIcoAQKh/BXx1cn5+c++bElMoQJlaiN45MzkoMYK8cYyhQsoFDiSvDlm+vv
/IOqOaEgqpE1SO8k0G21ZrFMBuR0LU1NTxS3widgE+VgiGkdCv1wlBJmFUY4
g1yBmaFgSdIyHrPaAKCrntAOlpfaC2V0IC2gUxWH6tjnRxtFFFWz3STJyUKD
FKH1MduIFg4ZE8SWd7H4AGhDWDLAQQu+m8+QcELdmcYtCMQMxcc8B0JPaRLE
Pl1A05zkg1GjHhn9RTbPR0gqIzCtMeZTd1pRymqXNgrFTURGQL3Fbq0Tuegq
RgSKPaQi3+pMa8OcolFgMqXjYBonMdi0tGi290n80HChRfXrkD4jIKB2nhPF
BWMtCXLjaDkm+C+/XEXsae/2+r1dxK/mGxNkQWmISgbe8ZQRb+TDxqCtPyIF
mNCOpmjLfOq6K8YBozlisOuBmM0p/ABwbQOnR7Ny4o/jvChbOkLxAu1479z2
mBiMsQgSA0uPVrCozDOK64Br2pSPVQTmLs4B4rgXsVq8Z8cDcY2eGBhnDRLk
mISMSZsCLXoFnH4QtGkmSqjWR8+7ihF5tMbEGYwnCoPi+HbjrrB4yFKM6YJp
QTgURSC6SizYhb1H87zIci/MAEY0RmYZMAiTjNW7cX9pMS3jwRaWINZRA1ey
u/oCfOUoAXtIBGRB/KLDiNg6uFX7VehBJIWmwUFvQBToxFowvMLW25FiFsUJ
kVh+0jFb/PgejbHKNqykN9iGG+obwmtXPXurvrHfvVObHgujJ6oEJDStRaux
WIy2kVMZvjg8WkBgQF1qYXJJwqQQ2yfPP+FcprJbr+fzpPN//+f/0g+xl0Xh
/QUWOlqqaLCEQV7tNVmyDDy/y8tCSyPm700P6faMAiYc7J4V0TzMfGhpBHjE
ouDt3/vvKqg/gcHbYu/Wxlxu897GuAnFZmYhjMY07DVbx7l2QpA5/WpTY8rK
xwqnAal8N8+Z9BBrQaJRoG2m66vz7zW7WBp/kevI2wM57UYgrotRNou8uo2y
xMhoXY5WawM9Fg7qIb6P1DHuYWBcexTMgiGohpKCZaBBcZ/g56hOZOoqKsk/
RyNZNB3OWd28rdmJ3Z397e1uv/t2+PVoe3t7sLe/83VXTfhHPxh+/e7dzTOL
lX73OwYOOAT+t6W+2u/1d/sbQDfwcBMeDFv5hr/RLNPkigbrfKWuNBUDFXre
1VKaxlXRlkMtSGHZ+APjL8C6kB8nJGjF0PMQc7EwfH6cVkFjYvgN6NmJ0FYa
3XFkPnE4/VhdX7+gj+pRX46R2/0Ln1BMccEXu61fkKe24BOiV3hfJvfeHsIj
39B2IGLgnj50ItCOmkK+JhWFHA6oRUaIQqcbl8xRPJ+zwcqKG0NA2oStCwXe
VbHxGZMdW33Norhhn28sxHtPj+46Fl3nGSxw/MHedwKzr+C94chsNDimBttm
4u1327/BwVjPlcH7KHV6R0RXMEuUHI3hLK9CScY8NxGb6hMzuM6a4E7R+yDR
VZsQkjziVfsO9ZBPtUo23dXQZb9qoqqKZBHOHWps74jfLe/pRzRUgkZvOVj8
IO2NVS/7qi2ASjiioHYatSKRLTq3UlmsHoig61pEZEOxKC7S9DW1AbPT26lM
aLWBYclKGVVKpeKOGe/e2RMCisbd5irSZweIjPkG9mIyD9lEvDx9cfby++vn
vHFn0YSAXoFNWot3wHDFKr/Liq9yJwIijS075vLIVbfnTXQa+VDUmZhVMEqW
k5fHF2fIC6+vL7VE3+w2ukKftBlucWzRxlo0ZYRsp6LWLwJAdp/ngGFoGKTL
iInUz1Ge8RtBvNjYtiBB1FdpDoZ/rSXqea/QYpcxapSsI61ItySpGeUwSIT5
lbYhbuZM7pHIRbBPwHOKE/RruVnVw2BHjSYBuYI5boSA0ivjn8lf47BwgXPg
+In1ZWA0YsrvHRtGXrmUJPi8Y0fGAbTBWsiXOvgTtGwEbyxzkTdpzTRvk8eA
MKG9dRrNInbqs7QuEpp0RCkC0o0RJRLGInUHHhjmmpA5ghvGpAIl6o4pK4bE
YBWyO1AP83JePdd8PdLBgFBcLxMTR5q/+V2OwPjU+Y1r+WnzXUxAkF1FVMUV
MMchRqqi/V1cT5gEBstSyUN7KF5pBJ3FAjO8ZU+DZe0UuJ2ZFKja5734ORKw
2OsUiCWxttgqKJjZUWr+y9lfkdEvL8Hy3mQ/WPeJy0e5Jcamq1bERGnABC7Y
gjPhbiClVP3rHMwFredyJy7hwtLzjjmFpausydiw2xtOYjtaEWkJdTNy6mHQ
mjg0NvM0+OjPwSw7AKN5u9cb7O2ZR/19fra/t7dTPd0Z8NPdweHu4f6jweGe
V5bolFYNPDLB33pKPVOWhOvCA2h6hP+jv4FsfaRMn+it673zao/QIaZezHP8
jl4dkTGvtrbAZbY9X7BGNxvdbG2hZ/2731Vo9Usw+kNlNZWxGN0+HyuoMNEl
MOQlSRn37WarW2Fxi+1fVN7DKkcDPI1Xx+YtTEU7cBVNAJGjK0wi/saC/gYm
tK824PtNrZ5aJQp/CXSVgItcqkfG/2jIy0dqFuSlsQoQsrrd3MjPAOtioR/j
qwvSrkFD/y5xXnx1dXZ5fvxCptBIWoEGl2ffXZ5dPV/a4vryr0ven/3l9fnl
2ZIGF+cvzy/eXCxqQSk+MMxDpweMKSjBPTz+K8cth1LrxmF0G6eyKRTail8c
6cpUw1xHna3MwQkdsMNVFLuzJvkv/uKQloQfANy05v+TfiiywN3mbGEw4jzg
nf0uZvb/0WYvoE8gIeKrftd6x6b1E3X+Et7BGMhcHvwrIsUWKPjVlALJClUO
aMQjSwyRrIjGgJJJ8zGdOnAfAnuA/VN/SlkE82n9cR2MnMB41x5d0OjSQoCZ
usb77u60EQCwJp/N//09tXHxlwfx/2Ax/w9c/idi+SL2fw2cenZ59vJkEasJ
H5395eT58cvvH8pKX0zg049r03d/r9tC3xd/WUHe049E3dOPQtwzE6GuK586
vUUfwYhOb5eTHPQrFEdUtB7BXV3+8PkUt7MDKufyhweR3M5iknMVDgC2lOIo
O+vRwWAF1eVxlmOQcrF4D6xg1o9RfDsplzR+Df7LktfXYLVG5QNJV7zVOx6b
sq6jQrL+yPjTgeGSsjmrbB/ZdMItsBosmAMxRuuUAep5g8VNsCeBG30iG5a7
QEdQSAMB/oN5wvHc7Z6381l9xsa1A2xk0Cv4DLEd7XI8NXaDhLlxcGy1TYDN
YtyK6ZoIgkTsOJAgyA9ClOi4F1lmeaHPXOCXZi8qFxda0lThn0TiJpyFblNa
u5xhUl1fk+Yf1pY0OzttkgYGXKVJ8w+sSfMPRtgwIzTtXF4X+7nqaWRvYxPM
J1sloUpa7OUqEWDRKpGkzpoS6oeTb4n6+DjS55vHuyCsoC/e+W+8BeVJA/xa
wmynJs5g5C2ewXI9igcNl4s0O/h+9WG0hoSzv2CufClRqrVNcVHOOF6QB1PX
KcbAeIJHugOa/iyIc5q4bv0v0X37zgAthW71AzIukFZtKwAkpFK40ET8Vq/U
XoeeI52lh9tmbWGQSs7aOLOEbauUHU2iEZ01jxfIJkXJAkJybUYNy3CzH8Af
mYApfb3w424bvIvksZUfYG1sYAZQEgfFRRZGzY3tXdnaZqLbrEHpTK0FuGqX
xAKxwrNFaV+O5kmDWINxKdkR1ugaCXHrUgvqqhly6py9CG7aHc/EaIg1hm9O
fMF6sQJckECEeWtqA6fC6Kgnvkn8k49DtUVIHZlSrfdOr1/tBCzZNiRo7Q/3
LDJx0bLWojSxgsRvYUZmZHdFW+lrRNFbNbKrMx6inGWK6/m5u2oLNEe3RUMj
AJkcoTW62vGKXX0Nw7LChj9MOA1++G16u6afny3Qxko7y9gNSe0j9VZ9Y376
KKjVOwzFebWHPL/q4fuoYThUL8niOsKIm/sIJ9R4CF0v3pg3S2AMhbryX2kz
XAvtiZbKrRx5W2WBQUhbpBizxUj8TG+4xDmrWpVGeGy6lA28iKzD0NLQfIQQ
yUkySm7nMCbIRo5JY59FjxMIKKHl1etr9brKZuHcG8pl8by2Bi1HHgIrn4Bz
5Ku8fIR9yrtsVDAhqZJvKM2GslnotGWQvze7vMGtuv72tL/b15mFnDdW7WMK
u2hWLap+JACN8gg/Qug3dvubblTKytfhpcEjUPbJda2/q732SE7nLQgSiKQQ
HJyXJpFOQATJj0ejzHZiabkO/BAk2V5/wEIJSBrjPXzoj7LXCShcv3lqbArn
AJerRAuSqruEAtCmtnzVUQnsx8yKz6oFM20Xsl2Gxw70rp0kPo1IYbdYTAUd
tApkN0dak2jbsK0mbEjzZe9JG092+weYTsci1zE7fz5j/ZUDHpoOIJKGsVp5
bF7XYaRNYzPgOAluyZJsrPIGpujFZqN9G5eVF3iz61m+o9Pd5cmr04XBpWU9
knFLCQqTOOdOiSOpnApuWy3+lmbIDBHS5h/57SnvnPIax5jvEH2Is3mhyaAw
lpYzjqMXu5xCV0cWBoLdCRMDiAzS+evSOzdw1W3LCrT1YG33C1HYoBZSj4I2
kdEGiMcUyiqtQ8mpZIpGVnJvMAQ+srUrp2sZjTcPZ76IBx85sV3rIftCc+Gd
I/XLNyojfnnyFLRQRsT9iTUj9U+pmR98mixqO2ls9e012okKpL+X6l7rS1R4
ufSNm2bbh3t2x3rTiSvjcMN6b4LfasQDpwkq1Ew2yxaqUcGptQeFwnnV9pNz
rIi1k04Q4sN45rjzWiluLCX2H5zgNsyyBCNGlPDB6WvWW1wOyQVZnM923ZYW
hc0JymYGW5AWdxT4abbcq7WkWl3oTbQ0JimyX/vAVKNo+aItRY30g8YBMjuH
qfJ5RP5WGSWJzrjFTKyQkzL4ADNzaywq0c7FaSaJpaQlzalmRZDA13pokRli
fmhfz5wZJDk4DhI6DLEw0a46np3qLavKZ6zD1GXVLc0XeZuAPIsGEEFoZ2mH
SlfRIAa29yW0uiRueM6tvsNWHSrGBIi4xSjhvWBNa6o/X/Jo+vNXMyR7a8os
k/PIyTNjM2PbSSiTEyPuqVN6WVQ5VY0jr1UdhqDlvCR9hwYa2hMa33GksRE7
uYKc5VSr7WNV9aleUVUfXc+H0hQCOmYgzmrXgEoQBUxQ56c0XbYJLcduIT6O
KwIQe9M6W9Ga1FiJHNsOtmWOK2BE8rCIuTboCascWifHdLEzzJZ+U0k2pNPq
5FmSEe0pt0sSaFdlSdqPb47hv5u2k2dYIg0ji27CpNVtI2nSeX5z/rK1W9n4
Wz958kHJknQmg1Nu8EQ1phuhRVGnHYDDFB7DyAYvGaaDTe4XUlTAh26YjJBY
OY+uQG8Lyyax/UJ+onxV9PTJL3AGic+KYGylAJkkR0vuW6TK4qmHVcAIBXTq
KCioHo29GTHlLRTcmGqZ6wIekdxidDbMK8pGkrxRGZZSDouIEx7xKNV91Xwo
xy4xVXvBKlHxBFIsoYm1lVpbaJK2UvH4JdYRzfVZc9nqK/D4D0zR9mHJaq7A
uVdJlr3X1oROBiQ9Yw43IKtaeaBG5UgONB8Hxc1ghN46LWV7MYCzXAKNEidG
vFtPrU0rGoAmzQKpqK93LXdbTtW70fL24zBWmnVuorF3mQMeqQUXFPLIGZgu
v8KEYrSueA0ro4WOjTQgLVxQaQ0+H94GQj8HYscgq82i+5tPo8rMI5sivp0A
QaIpNIpCPk+WoojULhsfGxILpA46JrKWIrdGeNqNHf0p6U8QHyDo8WTrv6RY
HeSYPsZqgM+w1OOj/YFOs8cT4zUY6gM3EKIHn1ZKsi0S1bWKYUlEGRpqU8LC
TuRENRYdKzIM2HqWiN42yyXwR9oJRAHjaylwRCZp5QSR0cm+0jLf7OM2/IfN
dD++xgp9SgP6RKb6BXmG9dYC0zdU7NXAxH2glLQevfOcNuLs1TMiq9RGPOBn
ddDe/pn7RRvYJm2SSc+eZ31+eLzOboOz+4PSB6neeYs61qx35DTHESqqq79r
z5HkhbY80z/Tg0XHFaWshZxTNGdPdPknc0BlPfOQRf6eNgx7Dd9ztXdZM/gW
e5ldG6Da4Wb37I32WJd4oXV/daUXWndbl3uhx1ztTEBaZt/bOzZuSKzyiSzc
k41lFolO9TIB4HAsdSovCivSjQITczKeVRGVoj483ZVokOoINRhxI5TmsMqJ
jo3OC2OpaPVTFfFq+G/W6RUxUKt3tal+PADRojbIdkKP5RYJJeIaPbNSn/j2
xHe0EnwqcuWBLHtWaKbU56MR/TWCsA+wpJ7RaXbxkdZDvi36bSE8leE5MFU9
rMg8ndSzAvYtLrw5643lTdhbknoEVaoA21kYcojtdCdtSeoCKTrLycUDMYvX
YDxXArRsGxqGq+ZfQ3Bt6JoJKGUdDWG369ye90I7Dq1GTJMRW4uY/Bqru3x2
dbvSXmc9u7qY6RqPXqLvS9Bw3dYBhwjAzfvSGXvujBcOxhZSu+VmiisssJzC
OYks6zA61grQgZQTydxmg00KRxZV/U3s+HgLfXFtaIqUb1IAhuLZl5xkd6ik
+FjJuCRZIGH0xvTqJpRhZm1FLbWODsQ6etZqHzUtiWcNW2JBppcR9s4Ba35W
0/LqxDoZ1CgvwjrfrrngeUuLX+rSGyh/GwePMBWwpcwcc4spqiUZgFQvlapU
chmXvOSysaho0IYAI6Hf32lR7NWBy36zYgSJN8ktM4COuS6At6zyZ887k7IB
oCzOX3/YrwrdamrELB8mtZpzw9u3WKO55OAEVXnENEyde8xH8QwA2gXQxUkx
Rzn+GPFONteWsJeNV6lxlsuizWsgHP+K9iT9q/kYOvOvJJLo83r6tJ5P8AD/
4GCwd7iRz6czNh/pwHN9MbGuQxrdUdFrgr62NtffnlI/auPr9GtazK9HX5tS
SJuE91WUJM4LbTALS5OYIlNgRIH46lBkQdOqsnkYIBymmAQY9uD6gz/98FMV
l8LSeLQDJ+5b9JHDIIs+lrpV9blaMdMRF4smL9jBAkh7zfgcDaFONnU5Xz0j
TjeijcKP/Ci5twX1pgyO04iLqiAui3AJMh15xyna3BPeDLQTnJyCWairsdpO
HjlxX1z5+gRIGN9FCRd1SklJ4N5FCjJLin0R/pEbKC8htNDKIGtbl4I4djkf
ijn03HJvAo7BdtGyGHl1OpGf1OdgB4sNQIA5sjyDep6T9sAtNSgWaKMkEGlQ
LM+EWxV6LSxsInNYsKqqCM5P8U+m2pJYManCxOVZQvW7S7uklY5zLuyJTs8e
UYmBKh8DE2MBpL+9hRZ/e0esh6eZ0KxLdcpbvfAVQkEQ4KzhO12Ft8Ci4Li5
heiUvG2MBnJk1pFeEwLJp3ozxJAbtMZszWxq498UUaAB6vVy+dIku6Iulnmv
8jqNL0WpTJi8qDosMDq0plUQVMev7b2gbNy6gQZe04/YP3f0ZLtLVEdCiStb
qhv490an7Ig9vBp0oj6Li1HjUJWcEq8BwNKAmrk2oP/Nmy68TlDaC5BCYDw4
F0+ynwN33kahPQBhyUgccsHvJlmiyag6by3V6gGhC2bBRnwu6ZJSAw6nozUx
40rvKekEK64kA0ur6bHaBrLR+VP2k9pIrToGfGzgm29ikp2xlGjEZUyiW1jt
dii/+YbqMCfJnE4WROoWVGweYDGcTSxvoo1XX+/36fKiOp1qjCxQ+SZa1fu6
CqmJkOF9MWjOde7u7jpV4Uf8k2rmwKu3neLDCB+0N6EwDTdufq52KZFieQ/Y
yph7bOrVFb4G3J+nsj5i/73RvzUCqPb8OkrULvxvqk9xvi5ju6wv9Ic4L7Ge
vVFTNRwiqpbgCF8veu78YGRxEbGN7U2nUUvf66KOwRa8nRsUcUnVsauAdFU5
XQcUEeSW5zB4XAAW8TMpJkwZoFJ1u8zGeHcLolM+tOrs2UKXPxmoP8hffbVx
IygZbBrs9DdvNnUYGlkNz0Pc6S2fUVlfdJHNQjLNCDOyL5MAhXeG0VG1wkai
IUvQiizhmZZlVFso0AJxxRZSitqS9Rb0mInWv29+qLlN6Y92Gh8xTAsHl06g
j3cmvrqCqlx2XIrdNoJiJSa0xzLXqirIsFNgT7Z6dOQNvzKygDK5YQDeBlgB
KtvfxT0ABs7UyMhj3DwGAKQgxIqu9NBOxcgipuyFqriwbYXd8HrWi5JxdVyk
2wXGmHxXr3lr5dvqW7JoJtYs4oU6kGI6pDMXnRikKmwprQ/xbGtHf9RmRadh
eRlV7ab3btAtTHI3ku1TMNOJPYt7t8asbqvdDgCiWWNQ3fSdu9rxNU6crhuq
bxb5EAe0FV+5RNKy57A89IUMbzO/Zv9KJO8OhGerV23SQbhyr8aVLC63uubL
LxYdlgjYA/HYOly9Yb/RcMk49Y/3Gx/vDpqtdlqGWC2QmmOpxWO98/T/Nx8m
wHwMuDxQiIntXgXcLEK0BNxECvmbHF1LwJm9y9VCSxdqoXPaoSnfxGPeWKR4
Y7v/HFbR1SE5Wtaosa25ZtHGq3tPzF3lUYjE7nOmxnIp0QfoJgI01WQyt/ux
e5+bwwIASO0gWWu8a9MqJIc+XJX/rfEYhdaODE5NZxFzkde2uAzbNwYQfKQv
ntATr7lnMDGr1M5n+1cVmmxHizxcM+JabhdKLMf7+hXdL4lKivP19u/774C9
TIXUngmg2tFGWDe91y8OrNk86bKEx8NxFDvEUDiKu2ZOgFWV2LNybJzspWlW
VIUA46ldz5iznkZJxruEKW4Q8L1Po3uqPLr/7kidcybFeyyBhVRgdNiU4pmA
7AyvjdK7fZQaWUTPiMGsi9ZeRrdZGdPi6m1kifWaO8qWXKtTpwWEVjrk45Wi
9PA6JPeOTE6ylKsIu0qzzl5vr7frMIsViL6bROVEdin06XR2gwujT8lpMAyh
YxF4wNQEnDHxDrNHnD0/fRFOTVSojfVnz4cfNGS0dykXzPAlSs1CkjCcU4lc
wqH6arz4FsS0zpAxYHgrwOh5r0qpzC5nJvCeCaUvmkAAjMfZMTYRS95mLBsb
1GLZ10QTYBaZ+jv6fUYFzE0oVFLbrLC0JnKtZGqF22lilElXOLV8G/cN9IBg
PmCIQc0yilTAX3ZfQXKLu0MTDEUiO0W4nIEww9/eAnH87R1dCHauS8Wz9riC
f+eFqWevd5p584DIjhogPO8pRSl2vtc5V57JSdZZPyRLmxnPpWF//HKWsYGX
jfmmRPdecN5uhMfDQGrsBRhcg4+CxNl58Thf6tHhLuZL8WFxfj/TKrIOtrkG
yOwVehQCkkgt1hUUhsEbzrUPEMJcCN0AxohvGoTR4cctrQPMhK76JqsHAMKr
I19joQBKL7Cc8yTW80aF5Fl38blw0nVRVnVNulYUgMzygk+TscbyEEYYS8wI
jD51UYhG4zFGzFCrD/G4K6wFe09ASXKdgmffjlbtydK4BC4W2kCZQwkQMByh
A90CQP4ca2pUtwJyCoUgMSh4+aaYgSqOg/CJDn9CA7ykPkgyxsQHvJ0dxVmD
xki4xLkaRwGeREK8XvINBR5H/D/EctVChWfO2613Rddk4FYLOlE6ZYSNjYqE
wLol4riLcdOBbnpC2zCirV46k8EX0Ht0PX2hCeY2pT1j0n8hBqhiXUOEeVis
lwkW+0TU6305jKzMucwXZ0SyVERQubIiFmHBkLJspBBrA548sABgIStqQdDG
URSy5DNjUeVELQXlmgjDsJLzMSXEAl75Bg+dHEuXKWjalFkrnrVnbvag3Fjr
MlU5I4pGAkwPBK2+B2ywzfeAfaVe34M0TXWAd0uCvvZGftEQgWZrPVBv6x+6
y/xuA1VvcbS1dQsicT7sgaTcArES+uU83ELlsQtaZNNUqXeCFWzSmbhFUHqL
rz8ifUZTAXJ6AQKaakQTLjFbzjvisxqkxLwf5JCfvoqFaqdjG5IZvlhpvr47
wO9vQ5/xKAK9ia0uzq89Dy+ExQtULXzju5sLurAiUi+4E/V4yg960qt7pfrT
G+gZy5fMZ2FQVsqm1ut/n4O0GWwPdmnJzvQNJv/MRbs8f3Xtv7qif7dm8yTZ
6h8eHhxuaj3shJjabqryDCA6ZIpdKVCxOdcqKe6LMpr2kO5HlG+f6Mxk53pP
ht3ek//V13v74P/zer8alRmWk4Il30FTAUxUmhdeqVZJNDQWXp2+Mm/pYj86
Q1Vv5trdl3zCSl+6ReYdVUto3CzBZ7FI1tqmuF5ALv0X/yw3erZfBS9XWuG6
enbdbFLcIeqQeo4YFnnaP9g5oK0X3FNqD84BsAgMxgOO7OiX513Nh2X1Sn/g
eZe60rJxFIsj9RJcI8971dhUhFdM0Z5nLs11FAo0uJgXpX1BUaDvhq2uYIXV
idjs83GlaR/qb++ken4JehYJ2KxvfYAr7d7Ra999TdeeC5MjIeOd9gA4cZTc
B1HvD8AA13M+TPj6QMckPGqCCZq5wqsoTaNpKoKgfqtTa38RVgbC09elq3Od
jZjXiFNgqu4Kd3nB+306LGZ/tP9/ilEXvnUgwHo6kizARImBCYLo5dZx28cX
wS3eqUbV2jaKzYXtvsMbtk19ZWoJdDRq73KEe+rFhK/llh3rMKKPUqKu10BO
wCG/V3hGprpumB0WEitWBpKLAKXY0KNQyY+i979Hva82kMT+FEflGG+fo5sD
qKmzZnwrYZD412jpH+dRoDZAQlWfMdWQpThHjj1SeGXYq5fILrghqE90pOoN
v0aGAV/+mPQM8IAIwKueJQON9BvPfcA0GB0o/ECKUkyOrVa8FBy+R5ABQ6ic
ilhO4VXyqXgG44l/ePy6fg27LclgHij65HQbHx2rzMG2r89PjSTDJCb7+kOi
bY/re0vSQqeli6LjFfOhr4+sdu3kE2h/eaZeG3HSqU62SugBzVuwe63jw2iL
rs4pqIlLS35/OlomMEHWj8Y+vPJDfwSynlSCf03s0vZBJfiOlA/oDYlX93aQ
Mky1zBaZsRCCKlCwenDTdgEUu6uhYJ65xtxxIZR7zxz402vR+eUX0vklNtsw
X2w+RmrqmVefPgH6fqk/6y6gOdByI70rTh07J3DKYIjfcxEeTjD4BwbjYVz4
/z+4lM45Jvr8AxSADv1+wX//UAZVtRcwMBedoVacBcRf8IWr1vVPcv7wgQO3
W1h6YI4a/oNiwfoLKyr1x/XyE3hP1KfUKI7CLRsYtzncFVDofD35OleJSr7W
Wxs/8CsUELguL0lj0OVbvu9TRAutLcl2KZZUbbivUkncu9LdGptyWBivrqzO
+JoEWveaUTCma7dg0WqZUiItt4eqDVjLzXrZuQOM94ilIoXGjmk7BND7Pe8j
0MW8m05eYZXK0dxb5wwLPlLOcwRT/gYmJtM0piPOSl+a4eagL+u/q/otQ9wc
v/xrbQR9lcQDex/s7dH/9CArzj/ZS3ttRVdNFQT9vqp85ZyCsGjjE+9Q49Xk
Ht8hoX6sXX+8/vryTchLV7Tr0S4Afj+Uqy478azj3lVpUKcvWDt/XWU88/5G
9QTFuK9vHQFmzPH0MZbGqnohWiA6twoN0JVYO9vbcpShSqmxE6zBFdruH4XD
g6OjPiZWUnXwIPHsIPpNGz3e4GWSdCmvvfJvYbyuimdfW91+/U6vuns6u5ws
vycqtwotUjsBX9+41DhvX+VJGeh5Vx9D77D4fFuqw2ctpLp8Bvb5W6sw2oJ7
wCmtNqPahdZ1fXw59p2b77mc/btqBWpdctDLWEHSEBgVhey3k8iuJhGvfzjo
bWPhr25bz+0EQgJlBY2YfqtpVBleFJ+lPROEp8/JWXYNiBs3s6MqkszNPF1B
ohYwaR7p6nHoAO8XCFZPq5JkrbMDv+Irultpoz/YrIZCvDq6xqRwfSUb5YXa
xtpOLVlVGM2WvD9n44VztEzzWm997m2dLqqUsT4lXnVpEsfO4Sp0mN5qiM38
2qaFDTa4rhen3FBSUpUsZLQUX4CkUbQpn8KKdX5CK7730zyc9dDgSzoutVJL
ukqxNucBz5k+R/xhD/gvd7IKDfJZrc8d6fNhXVHrWk+73NN6PXArXA29HPXT
UUeGhHTGz1cKVOrGwmWhhSFB6ixMXBbL10SvSlr0e+6t7I1FkWVRg675Us9+
j2cPnTiZpcvRoFT9A+xyaRIip990/7mIGayNmAZe9jVeBg/Fy+Az8GKxd+OU
Xgs90YmrjcGBYK7BlzYaLLXUigArdVY1oF3Esi7yDhr6r321Pw/swT8L7MF6
YNf5rR3qnb1lYO+1gs081eZkLIV7Z29dwAdrAb4c9P0FoA9aQV8FuYGdMou1
0cTmgmj8IPwQ5WVMXsZdpmgpOb7F6R+F2rDu+R7y1mWsbw+/qVPZDTh3pWdz
BboNNrlRKvEd3yGnh6invcPkJIm3q2oE4XYPyKT6Ti7uMR0B2/QMGnrqrKrb
yfUPJKdI50RwHXJcFHBibevQ3I/J/hN08dBbBfXuooZQH5EN8rhgz+jEuvXz
Ryy8KTFFOStr2vpl5svliD4XGOb4DwWRqmbgrKHrx/XdzDjDqLyLIveGRRwQ
r7k2l3byOXCvLYamr2NU7oGEuwwP3KFzI4e7KGYuadEo74Ocd9+wKlZyL6dg
OcOo5bZTLhuAd+xp2xWTx6iYFp7AwRK51cE6WKBxfDuXzae7QE4Kw2f03iOo
GoXBWzCGdbBxewUPOdLy8gWYXHexAK5Ib3VR6cEOXWJApywKLxAnTRcKA/KQ
uzjxIFEpVTTJKpciYW//3t920vfoBu7tdxSItO7hti4PvLwsngHVPJZDj+kI
bKInnZZpdJ4Coz9GiJ5aBIZeUNt64oZBYwF6j7foe+yoRJCfkgR5XOZPRdo8
xuTbJL5Nn3SSaFx2VA6kBsLqSWfQeYqBxsdb5aSlcY7pfG7rk+b6vyXkvlvQ
xwgDL3mHYmzUyU7naevcGt3AX/myqTB0T4eREPPSSTwFz5ZyfUYW+S//AnCZ
5REdF2j9RsOHTwTrj8thFt63AB06+H8qZS83zk/V77n45Sb0Era0F1h2l7/u
f9HX1usFOK+Bf4JHXLk6T7G868EXwb2z9uv14P5zzaNe3v0+b+/9gf9BFuO/
QAr0Vsz6s79cNqb6g6oeaPG1vLvDz+9uPYxWN2perljpZTgBUOi+gXWxtPN4
mG89VdLXgz7t7z4Ijs/Aef/RrznCg5eBTVW+iARHWrUszvifsxirRNOvgPAV
Qqa/gmseOMR6KOfyfbOyKt+3Asg+jCvFa1ZIj3Ub7q/bsL/b1vJh81wpLnEM
2k9bW0o+9IMHj7C/7ANLfbPShj/QWnu6jtmG1qdjutlWrbZ4H38Es1gugGk3
/tTW09/Oelvb8nJs8v9y9hd4eH9cywajNhJ6W97yz5ddqU/eVcfHXXV90qUb
zk91Fb1f7fNf2147k0Q2vaVsF0v+/C+7pK9/f1v+cbC3Z/z3eE077Nfp+bew
EMkZ6pKvyCn2VnB2+ZeUuYhg0z4NTYL9V1JQ/GKF9dvSBcHzgG5/ZRtvGToY
GL4VnoFJEJgVxsN6aKr3LO1/K/StHO43ttlWo1kik7EcZYslWxEx3t//tTBO
o87T6gTpb4nvJYP9NubacZKYQ5YsONfi60vKTRfa5hmdvuJitiC3+cHyHqxb
uRghDo3hExnDfqQT3J2H1sC/mdF3Yk2XBn0RpbdAcmtx98KP12LgkwYWFn6+
xNT7SklK6ovs1vOuaEPt7aJjIIN3mPy1/D/PV9/FH9Vwfmud6NRZPvDyfIqp
QG402mQJodU4SgJO5l8BTH89YN7wQYM8mmUqidP3nHWMPdzhxT8EJWeP++qm
2EINK8e8t6xMvK0bvHF2ioc5Z8i0GLvlE1vw/DKayoz4RJOP5yfpyl14eYFl
oBrx92FUHSW0hlk56e31Jn0sSUOUnflVf+dwsNvfV1GQUx09PD8my4TZTrld
AbSqOFDhrnYSsJCDmstB3T5cG1SyWxB3odQRSCWYHUniK12ezod3qvSsWRan
gGGlEMf5e8XlvquUfgrmF/UPqP2izoj+qkP0kh25oUuuoq6pLrDcpCvYYyxz
CMtt0Y1zXaM5FkTXasi+1D3uEtNuEvRxal06QWlVJz5KH8yRphPtSHglnZWh
OgHxB07JjjGDPJzzjjAvZhqXUvfmfpatXqCD9RboBPlxfE/XlzRqHd9x5VGu
TU57K/qiDVnaWulfQIo+y4S4du8agFnhZQTw5RlfeC0nG4KqGCDuDBBtFBZN
gFaK+TwEJ6yPddFee0Pi9Pj6WGC6/O6kv72z51P5vjprSpsCLIcRVdTW11AJ
6PcmR77M7MIHdL7R4EdneMVplUgmssCp4ksXMFacZgQh1X21Ntz4MGoq2Qjx
UvaULIFVy/9off7kjcLFm3qf2M4aOTuECzbsoMuO9bOj/Keqs6BtZ+Uk9tfW
SFiORM7YEh/PoiTBH1NgP1iW1eyyt77y++UX65zBJ86oRlSiiGMdF8z0CSXE
FHh09wtu2oHPnqOMqe4+bNvOjVFiosgi4M3NiEgjvJ2YpRRGMFU+LXG1cuK7
6xNK65F+Q5FGU8Z8p2qtfAzCRea/dEYHqO1q86bKTJ25+atV89hZbx5aqsju
nn16HyFsubYEJTQl6oOUPDk9fYFrSiDGYZzhOaYRAHtPJCAIaF5psJr+1jS+
EHOgUkZzpgwteOVOKUKoLe1WjbqulQVkdnF+ccb7xpUKZYVKCtCq3odC37Su
BFl1czYfZB9RAWh6RccQzk/5XDndnWmX4mV60HeFyJUx95buwiocuggHyhdf
ZNGq2a9vbpmioGO5v66+vL4ylxpr68zm4HkJ4uBnXSRUsyaojDjFPAaSX5h2
IadSqB+kNc9bYq0fKX2QGRkEIIJO854++bYVZqOtSTlNthb2sLjz/hd33l/c
+fYXd769sHOwS7+w8+3DxZ0ffHHnB4s7f/TFnT9a3Pn+F3e+v7jzvS/ufG9x
57tf3Pnu4s53vrjzncWdfzGHbi/m0O0v5tDtxRy6/cUcur2NsYfjEZbySaKQ
DkkX3i9H85TPJtMlC3S6PzBtop73/wAxZhhIqMQAAA==

-->

</rfc>
