{"id":57373,"date":"2026-06-01T08:02:17","date_gmt":"2026-06-01T08:02:17","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/57373\/"},"modified":"2026-06-01T08:02:17","modified_gmt":"2026-06-01T08:02:17","slug":"dns-aid-lets-ai-agents-find-and-verify-each-other-through-dns","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/57373\/","title":{"rendered":"DNS-AID lets AI agents find and verify each other through DNS"},"content":{"rendered":"<p><a href=\"https:\/\/www.helpnetsecurity.com\/2026\/04\/09\/itamar-apelblat-token-security-ai-agents-security-risks\/\" rel=\"nofollow noopener\" target=\"_blank\">AI agents<\/a> run across many platforms, and each one needs a way to locate and confirm the identity of the others it works with. The Linux Foundation\u2019s DNS-AID project gives them that capability through the Domain Name System, the same address lookup system that has directed internet traffic for decades.<\/p>\n<p>The <a href=\"https:\/\/dns-aid.org\/\" target=\"_blank\" rel=\"nofollow noopener\">project<\/a> lets AI agents and Model Context Protocol (<a href=\"https:\/\/www.helpnetsecurity.com\/2025\/10\/29\/proximity-open-source-mcp-security-scanner\/\" rel=\"nofollow noopener\" target=\"_blank\">MCP<\/a>) servers use DNS as a global, vendor-neutral directory for publishing, discovering, and verifying one another. Infoblox developed the initial code, and the project now sits under Linux Foundation governance.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/06\/DNS-AID_AI_agent_discovery.webp\" class=\"aligncenter\" alt=\"DNS-AID AI agent discovery\" title=\"DNS-AID\"\/><\/p>\n<p>\u201cDNS-AID helps anchor agent discovery in the DNS infrastructure the internet already trusts. The Linux Foundation provides the neutral home where this work can grow with the open governance, community collaboration, and long-term stability the emerging agentic web requires,\u201d said <a href=\"https:\/\/www.linkedin.com\/in\/zemlin\/\" target=\"_blank\" rel=\"nofollow noopener\">Jim Zemlin<\/a>, CEO at the Linux Foundation.<\/p>\n<p>How the discovery works<\/p>\n<p>DNS-AID works as a naming convention layered on top of DNS records that organizations already operate. It uses existing SVCB, TXT, and TLSA record types defined in RFC 9460 and RFC 4033, so administrators can adopt it on any DNS server that supports DNSSEC and SVCB. Each agent gets a record under a pattern such as _chatbot._mcp._agents.example.com, which encodes its protocol, service port, capability document, and other metadata.<\/p>\n<p>Agents can be located three ways: a direct lookup by name, a search by capability, or a crawl of a domain\u2019s agent index. DNSSEC signs the records, creating a cryptographic chain of trust from the DNS root down to each agent, and DANE binds TLS certificates to those records. A discovering agent validates these signatures and then connects directly to the published endpoint over MCP, A2A, HTTPS, or another protocol declared in the record.<\/p>\n<p>Reference implementation and backends<\/p>\n<p>The project ships a reference implementation with a Python SDK, a command-line interface, and an MCP server. Eight backends are included, covering Amazon Route 53, Cloudflare, Infoblox NIOS and UDDI, Azure DNS, Google Cloud DNS, NS1, and a self-hosted BIND9 option. A Docker Compose setup with a local BIND9 server lets developers test the tools locally on their own machines.<\/p>\n<p>Backing and intended uses<\/p>\n<p>Initial members include Cloudflare, CSC, Equinix, GoDaddy, IDC, Indeed, Infoblox, Internet Systems Consortium, and WWT.<\/p>\n<p>Documented use cases cover cross-organization agent collaboration, research consortiums that publish agents under university domains, multi-tenant SaaS platforms that isolate customers through DNS zone delegation, and lightweight agents on edge and IoT devices.<\/p>\n<p>\u201cThe agentic internet is going to be built on the same DNS and public-CA infrastructure that carried the human web for 30 years, and that works because no single operator owns it. DNS-AID gives agent discovery a neutral DNS-layer protocol any resolver can implement. The Agent Name Service open standard then adds a layer of verification and identification any agent can use. Both standards compose with whatever sits above them at the application layer. DNS-AID and Agent Name Service at the Linux Foundation are part of a broader move toward open, interoperable building blocks for the evolving internet. The standards that succeed at internet scale are the open ones, well operated,\u201d said <a href=\"https:\/\/www.linkedin.com\/in\/scottbcourtney\/\" target=\"_blank\" rel=\"nofollow noopener\">Scott Courtney<\/a>, VP, Engineering, GoDaddy<\/p>\n<p>The code is open for contributions on <a href=\"https:\/\/github.com\/dns-aid\" target=\"_blank\" rel=\"nofollow noopener\">GitHub<\/a>.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/04\/divider.gif\" class=\"aligncenter\"\/><\/p>\n<p>Must read:<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/04\/devider.webp\"\/><\/p>\n<p>Subscribe to the Help Net Security ad-free monthly newsletter to stay informed on the essential open-source cybersecurity tools. <a href=\"https:\/\/www.helpnetsecurity.com\/newsletter\/\" rel=\"nofollow noopener\" target=\"_blank\">Subscribe here!<\/a><\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/04\/devider.webp\"\/><\/p>\n","protected":false},"excerpt":{"rendered":"AI agents run across many platforms, and each one needs a way to locate and confirm the identity&hellip;\n","protected":false},"author":2,"featured_media":57374,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[405,7537,6860,16249,5071,24237,21398,24239,333,335,33412],"class_list":["post-57373","post","type-post","status-publish","format-standard","has-post-thumbnail","category-agentic-ai","tag-ai-agents","tag-artificial-intelligence-agents","tag-cloudflare","tag-dns","tag-equinix","tag-godaddy","tag-idc","tag-infoblox","tag-linux","tag-open-source","tag-the-linux-foundation"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/57373","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=57373"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/57373\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/57374"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=57373"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=57373"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=57373"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}