dns operations s. moonesamy eland systems [email protected] afrinic 11 november 2009 1

11
DNS Operations S. Moonesamy Eland Systems [email protected] AfriNIC 11 November 2009 1

Upload: faith-thomson

Post on 27-Mar-2015

212 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

DNS Operations

S. Moonesamy

Eland [email protected]

AfriNIC 11November 2009

1

Page 2: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

2

Domain Name System

AfriNIC 11 – DNS Operations

Lookup service

Globally unique public name space

Page 3: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

3

DNS Tree

AfriNIC 11 – DNS Operations

com org net cm tg sn za

afrinic.net gouv.sn

www.gouv.sn

Page 4: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

4

Domain names

AfriNIC 11 – DNS Operations

Hostname [A – Z] [0 – 9] hyphen

US ASCII

IDN

Page 5: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

5

Terminology

AfriNIC 11 – DNS Operations

DNS label

www . gouv . sn

DNS Zone

www . afrinic . netmeeting . afrinic . net

Page 6: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

6

DNS Query

AfriNIC 11 – DNS Operations

dig -t A www.afrinic.net

;; QUESTION SECTION:

;www.afrinic.net. IN A

;; ANSWER SECTION:

www.afrinic.net. 86400 IN A 196.216.2.1

;; Query time: 80 msec

;; MSG SIZE rcvd: 340

QNAME QCLASS QTYPEwww.afrinic.net IN A

Page 7: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

7

Name Servers

AfriNIC 11 – DNS Operations

dig -t ns sn

;; QUESTION SECTION:

;sn. IN NS

;; ANSWER SECTION:

sn. 67264 IN NS ns.sentoo.sn.

sn. 67264 IN NS ns-sn.ripe.net.

sn. 67264 IN NS ns1.ird.fr.

sn. 67264 IN NS ns3.nic.fr.

sn. 67264 IN NS ns.ucad.sn.

Page 8: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

8AfriNIC 11 – DNS Operations

Transport Protocols

UDP

TCP

512 octet payload

Page 9: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

9AfriNIC 11 – DNS Operations

EDNS0

Extension Mechanism for DNS allows the transport of larger DNS packets over UDP

Page 10: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

10AfriNIC 11 -DNS Operations

What could go wrong?

Root servers

misconfiguration

firewalls

Authoritative servers

Domain Name Registry

Unreachable servers

Page 11: DNS Operations S. Moonesamy Eland Systems sm+afrinic@elandsys.com AfriNIC 11 November 2009 1

DNS Operations

10

Thank you

AfriNIC 11 – DNS Operations