// REFERENCE
TSIG record
Type number: 250
TSIG authenticates DNS transactions (zone transfers and dynamic updates) with a shared secret key and an HMAC. It's the correct way to restrict who can do an AXFR or an update.
Related tools
Work with this in:
Related
caa
CAA record dnskey
DNSKEY record ds
DS record rrsig
RRSIG record nsec
NSEC record nsec3
NSEC3 record
CAA record dnskey
DNSKEY record ds
DS record rrsig
RRSIG record nsec
NSEC record nsec3
NSEC3 record
Types per the IANA DNS parameters registry and their RFCs. Educational content.