---
id: "secdns-extension"
kind: "glossary-term"
title: "secDNS extension"
language: "en"
category: "Transfers and EPP"
updated: "2026-10-04T14:01:23Z"
canonical: "https://tldlog.com/glossary/secdns-extension/"
translations:
  es: "https://tldlog.com/es/glosario/extension-secdns/"
  de: "https://tldlog.com/de/glossar/secdns-erweiterung/"
  fr: "https://tldlog.com/fr/glossaire/extension-secdns/"
  it: "https://tldlog.com/it/glossario/estensione-secdns/"
  pt-BR: "https://tldlog.com/pt/glossario/extensao-secdns/"
  ru: "https://tldlog.com/ru/glossariy/rasshirenie-secdns/"
  zh-Hans: "https://tldlog.com/zh/cihui/secdns-kuozhan/"
---

# secDNS extension

The EPP add-on that lets a registrar send a domain's DNSSEC data to the registry, which publishes it as DS records in the parent zone. Without that data, resolvers cannot check the domain's signatures from the root down. Other routes include web forms and automation with CDS and CDNSKEY records. The extension is defined in RFC 5910.

## related terms

- [EPP extension](https://tldlog.com/glossary/epp-extension/)
- [DNSSEC](https://tldlog.com/glossary/dnssec/)
- [DS record](https://tldlog.com/glossary/ds-record/)
- [DNSKEY record](https://tldlog.com/glossary/dnskey-record/)
- [EPP](https://tldlog.com/glossary/epp/)
