{"id":4708,"date":"2010-02-27T16:21:05","date_gmt":"2010-02-28T00:21:05","guid":{"rendered":"https:\/\/blogs.infoblox.com\/?p=4708"},"modified":"2020-05-06T10:31:46","modified_gmt":"2020-05-06T17:31:46","slug":"dnssec-vs-dnscurve","status":"publish","type":"post","link":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/","title":{"rendered":"DNSSEC vs. DNSCurve"},"content":{"rendered":"<p>With the recent announcement that\u00a0<a href=\"http:\/\/www.opendns.com\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">OpenDNS<\/a>\u00a0will support\u00a0<a href=\"http:\/\/www.dnscurve.org\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">DNSCurve<\/a>, I&#8217;ve begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC. They&#8217;ve generally heard that DNSCurve is simpler to set up than DNSSEC and involves less overhead.<\/p>\n<p>Unfortunately, DNSCurve isn&#8217;t an alternative to DNSSEC &#8211; although it could conceivably complement DNSSEC, in ways I&#8217;ll discuss.<\/p>\n<p>You can think of DNSCurve as a clever scheme for bootstrapping secure communications between name servers, a bit like automatically setting up a\u00a0<a href=\"http:\/\/www.faqs.org\/rfcs\/rfc2845.html\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">TSIG<\/a>\u00a0key for use between any two name servers. To communicate securely, a recursive name server can use public key information embedded in the domain name of an authoritative name server to derive a session key. The communications, then, can be encrypted for privacy, authenticated and integrity-checked.<\/p>\n<p>One thing DNSCurve doesn&#8217;t do is protect data sitting in a name server&#8217;s cache. It secures the channel between two name servers, but if your name server retrieves records from the cache of an untrusted recursive name server, DNSCurve gives it no way to authenticate those records. DNSSEC, of course, does, as those records would be accompanied by an RRSIG record that digitally signed them.<\/p>\n<p>Likewise, if a hacker compromises an authorized authoritative name server, DNSCurve can&#8217;t protect name servers that query that name server: The responses continue to validate. With DNSSEC &#8211; assuming the hacker didn&#8217;t gain access to the zone&#8217;s private key &#8211; the hacker wouldn&#8217;t be able to produce valid signatures for the zone data.<\/p>\n<p>Finally, the difference between the amount of support for DNSCurve and DNSSEC is startling. OpenDNS&#8217;s implementation of DNSCurve is, by their own admission, the only existing DNSCurve implementation so far. Despite their announcement of support for DNSCurve, their recursive name server currently doesn&#8217;t use DNSCurve to secure any communications, because there are no authoritative name servers that speak DNSCurve. Today, an interested, committed DNS admin would have to write his own implementation of DNSCurve to deploy it.<\/p>\n<p>DNSSEC is supported in the latest versions of\u00a0<a href=\"http:\/\/www.isc.org\/software\/bind\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">BIND<\/a>, the Microsoft DNS Server,\u00a0<a href=\"http:\/\/www.nlnetlabs.nl\/projects\/nsd\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">NSD<\/a>, and\u00a0<a href=\"http:\/\/www.unbound.net\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Unbound<\/a>, as well as in many products based on those name servers.<\/p>\n<p>But what frustrates many of us in the DNS community isn&#8217;t what DNSCurve doesn&#8217;t do, it&#8217;s what it does. Specifically, DNSCurve is distracting DNS administrators from the important work of deploying DNSSEC. We&#8217;ve labored for 15 years to address misgivings about the DNSSEC specifications, provide a choice of implementations that support DNSSEC, pressure the administrators of the upper levels of the Internet&#8217;s namespace to take on the hard work of signing their zones, and rally legions of DNS administrators. And, just as we gain traction and begin to make headway, DNSCurve comes along, claiming to offer an alternative, when in fact it solves different problems.<\/p>\n<p>In an ideal world, DNSCurve could act as a powerful complement to DNSSEC, providing channel authentication and privacy that DNSSEC alone doesn&#8217;t offer. We&#8217;d finish the roll out of DNSSEC, begin deploying DNSCurve, and enjoy the best of both. But DNSCurve&#8217;s backers seem committed to derailing DNSSEC&#8217;s progress in favor of DNSCurve. If they succeed, the Internet will be the worse off for it.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>With the recent announcement that\u00a0OpenDNS\u00a0will support\u00a0DNSCurve, I&#8217;ve begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC. They&#8217;ve generally heard that DNSCurve is simpler to set up than DNSSEC and involves less overhead. Unfortunately, DNSCurve isn&#8217;t an alternative to DNSSEC &#8211; although it could conceivably complement DNSSEC, [&hellip;]<\/p>\n","protected":false},"author":178,"featured_media":1098,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"_genesis_hide_title":false,"_genesis_hide_breadcrumbs":false,"_genesis_hide_singular_image":false,"_genesis_hide_footer_widgets":false,"_genesis_custom_body_class":"","_genesis_custom_post_class":"","_genesis_layout":"","footnotes":""},"categories":[2],"tags":[30,241,229,16,15],"class_list":{"0":"post-4708","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-security","8":"tag-dns","9":"tag-dnscurve","10":"tag-dnssec","11":"tag-infoblox","12":"tag-security","13":"entry"},"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.3 (Yoast SEO v27.3) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>DNSSEC vs. DNSCurve<\/title>\n<meta name=\"description\" content=\"With the recent announcement that OpenDNS will support DNSCurve, I&#039;ve begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"DNSSEC vs. DNSCurve\" \/>\n<meta property=\"og:description\" content=\"With the recent announcement that OpenDNS will support DNSCurve, I&#039;ve begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/\" \/>\n<meta property=\"og:site_name\" content=\"Infoblox Blog\" \/>\n<meta property=\"article:published_time\" content=\"2010-02-28T00:21:05+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-05-06T17:31:46+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/482248321-660x454.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"600\" \/>\n\t<meta property=\"og:image:height\" content=\"413\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Cricket Liu\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Cricket Liu\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/\"},\"author\":{\"name\":\"Cricket Liu\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#\\\/schema\\\/person\\\/bb6b62b1b99a7cbcd7c528d5763778d5\"},\"headline\":\"DNSSEC vs. DNSCurve\",\"datePublished\":\"2010-02-28T00:21:05+00:00\",\"dateModified\":\"2020-05-06T17:31:46+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/\"},\"wordCount\":546,\"publisher\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/wp-content\\\/uploads\\\/482248321-660x454.jpg\",\"keywords\":[\"DNS\",\"DNSCurve\",\"DNSSEC\",\"Infoblox\",\"Security\"],\"articleSection\":[\"Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/\",\"url\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/\",\"name\":\"DNSSEC vs. DNSCurve\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/wp-content\\\/uploads\\\/482248321-660x454.jpg\",\"datePublished\":\"2010-02-28T00:21:05+00:00\",\"dateModified\":\"2020-05-06T17:31:46+00:00\",\"description\":\"With the recent announcement that OpenDNS will support DNSCurve, I've begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/wp-content\\\/uploads\\\/482248321-660x454.jpg\",\"contentUrl\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/wp-content\\\/uploads\\\/482248321-660x454.jpg\",\"width\":600,\"height\":413,\"caption\":\"Using Infoblox DNS Traffic Control to load balance DNS traffic to instances hosted in Azure DNS priv\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/security\\\/dnssec-vs-dnscurve\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Security\",\"item\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/category\\\/security\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"DNSSEC vs. DNSCurve\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/\",\"name\":\"infoblox.com\\\/blog\\\/\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#organization\",\"name\":\"Infoblox\",\"url\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/wp-content\\\/uploads\\\/infoblox-logo-2.svg\",\"contentUrl\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/wp-content\\\/uploads\\\/infoblox-logo-2.svg\",\"width\":137,\"height\":30,\"caption\":\"Infoblox\"},\"image\":{\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/#\\\/schema\\\/person\\\/bb6b62b1b99a7cbcd7c528d5763778d5\",\"name\":\"Cricket Liu\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/blogs.infoblox.com\\\/wp-content\\\/uploads\\\/cricket-new-96x96.jpg\",\"url\":\"https:\\\/\\\/blogs.infoblox.com\\\/wp-content\\\/uploads\\\/cricket-new-96x96.jpg\",\"contentUrl\":\"https:\\\/\\\/blogs.infoblox.com\\\/wp-content\\\/uploads\\\/cricket-new-96x96.jpg\",\"caption\":\"Cricket Liu\"},\"description\":\"Cricket is one of the world\u2019s leading experts on the Domain Name System (DNS) and serves as the liaison between Infoblox and the DNS community. Before joining Infoblox, he founded an internet consulting and training company, Acme Byte &amp; Wire, after running the hp.com domain at Hewlett-Packard. Cricket is a prolific speaker and author, having written a number of books including \u201cDNS and BIND,\u201d one of the most widely used references in the field, now in its fifth edition.\",\"url\":\"https:\\\/\\\/www.infoblox.com\\\/blog\\\/author\\\/cricket-liu\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"DNSSEC vs. DNSCurve","description":"With the recent announcement that OpenDNS will support DNSCurve, I've begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/","og_locale":"en_US","og_type":"article","og_title":"DNSSEC vs. DNSCurve","og_description":"With the recent announcement that OpenDNS will support DNSCurve, I've begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC.","og_url":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/","og_site_name":"Infoblox Blog","article_published_time":"2010-02-28T00:21:05+00:00","article_modified_time":"2020-05-06T17:31:46+00:00","og_image":[{"width":600,"height":413,"url":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/482248321-660x454.jpg","type":"image\/jpeg"}],"author":"Cricket Liu","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Cricket Liu","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#article","isPartOf":{"@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/"},"author":{"name":"Cricket Liu","@id":"https:\/\/www.infoblox.com\/blog\/#\/schema\/person\/bb6b62b1b99a7cbcd7c528d5763778d5"},"headline":"DNSSEC vs. DNSCurve","datePublished":"2010-02-28T00:21:05+00:00","dateModified":"2020-05-06T17:31:46+00:00","mainEntityOfPage":{"@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/"},"wordCount":546,"publisher":{"@id":"https:\/\/www.infoblox.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#primaryimage"},"thumbnailUrl":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/482248321-660x454.jpg","keywords":["DNS","DNSCurve","DNSSEC","Infoblox","Security"],"articleSection":["Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/","url":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/","name":"DNSSEC vs. DNSCurve","isPartOf":{"@id":"https:\/\/www.infoblox.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#primaryimage"},"image":{"@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#primaryimage"},"thumbnailUrl":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/482248321-660x454.jpg","datePublished":"2010-02-28T00:21:05+00:00","dateModified":"2020-05-06T17:31:46+00:00","description":"With the recent announcement that OpenDNS will support DNSCurve, I've begun hearing more questions about it. In particular, people wonder whether DNSCurve is a viable alternative to DNSSEC.","breadcrumb":{"@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#primaryimage","url":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/482248321-660x454.jpg","contentUrl":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/482248321-660x454.jpg","width":600,"height":413,"caption":"Using Infoblox DNS Traffic Control to load balance DNS traffic to instances hosted in Azure DNS priv"},{"@type":"BreadcrumbList","@id":"https:\/\/www.infoblox.com\/blog\/security\/dnssec-vs-dnscurve\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.infoblox.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Security","item":"https:\/\/www.infoblox.com\/blog\/category\/security\/"},{"@type":"ListItem","position":3,"name":"DNSSEC vs. DNSCurve"}]},{"@type":"WebSite","@id":"https:\/\/www.infoblox.com\/blog\/#website","url":"https:\/\/www.infoblox.com\/blog\/","name":"infoblox.com\/blog\/","description":"","publisher":{"@id":"https:\/\/www.infoblox.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.infoblox.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.infoblox.com\/blog\/#organization","name":"Infoblox","url":"https:\/\/www.infoblox.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.infoblox.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/infoblox-logo-2.svg","contentUrl":"https:\/\/www.infoblox.com\/blog\/wp-content\/uploads\/infoblox-logo-2.svg","width":137,"height":30,"caption":"Infoblox"},"image":{"@id":"https:\/\/www.infoblox.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/www.infoblox.com\/blog\/#\/schema\/person\/bb6b62b1b99a7cbcd7c528d5763778d5","name":"Cricket Liu","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blogs.infoblox.com\/wp-content\/uploads\/cricket-new-96x96.jpg","url":"https:\/\/blogs.infoblox.com\/wp-content\/uploads\/cricket-new-96x96.jpg","contentUrl":"https:\/\/blogs.infoblox.com\/wp-content\/uploads\/cricket-new-96x96.jpg","caption":"Cricket Liu"},"description":"Cricket is one of the world\u2019s leading experts on the Domain Name System (DNS) and serves as the liaison between Infoblox and the DNS community. Before joining Infoblox, he founded an internet consulting and training company, Acme Byte &amp; Wire, after running the hp.com domain at Hewlett-Packard. Cricket is a prolific speaker and author, having written a number of books including \u201cDNS and BIND,\u201d one of the most widely used references in the field, now in its fifth edition.","url":"https:\/\/www.infoblox.com\/blog\/author\/cricket-liu\/"}]}},"_links":{"self":[{"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/posts\/4708","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/users\/178"}],"replies":[{"embeddable":true,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/comments?post=4708"}],"version-history":[{"count":1,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/posts\/4708\/revisions"}],"predecessor-version":[{"id":4709,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/posts\/4708\/revisions\/4709"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/media\/1098"}],"wp:attachment":[{"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/media?parent=4708"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/categories?post=4708"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.infoblox.com\/blog\/wp-json\/wp\/v2\/tags?post=4708"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}