Wednesday, 23 March, 2016
DNSSEC provides the ability for DNS servers and resolvers to trust DNS responses by using digital signatures for validation. When a resolver issues a query for a name, the accompanying digital signature is returned in the response. Validation of the signature is then performed through the use of a preconfigured trust anchor.
Successful validation proves that the data has not been modified or tampered with in any way”.DNS is a hierarchical, distributed database that allows users to locate resources on the network