RFC 3655:Redefinition of DNS Authenticated Data (A...
RFC-Ref

Local Security Policy


Click on the red underlined text to get to the source

... AD bit such that it is only set if all data in the response has been cryptographically verified or otherwise meets the server's local security policy. Thus, neither a response containing properly delegated insecure data, nor a server configured without DNSSEC ...



Google
Web
RFC-Ref