Book description
This book will give you an all encompassing view of the domain name ecosystem combined with a comprehensive set of operations strategies.
About This Book- Manage infrastructure, risk, and management of DNS name servers. Get hands-on with factors like types of name servers, DNS queries and and so on.
- Practical guide for system administrators to manage mission-critical servers
- Based on real-world experience - Written by an industry veteran who has made every possible mistake within this field.
Ideal for sysadmins, webmasters, IT consultants, and developers-anyone responsible for maintaining your organization's core DNS
What You Will Learn- Anatomy of a domain - how a domain is the sum of both its DNS zone and its registration data, and why that matters.
- The domain name ecosystem - the role of registries, registrars and oversight bodies and their effect on your names.
- How DNS queries work - queries and responses are examined including debugging techniques to zero in on problems.
- Nameserver considerations - alternative nameserver daemons, numbering considerations, and deployment architectures.
- DNS use cases - the right way for basic operations such as domain transfers, large scale migrations, GeoDNS, Anycast DNS.
- Securing your domains - All aspects of security from registrar vendor selection, to DNSSEC and DDOS mitigation strategies.
Managing your organization's naming architecture and mitigating risks within complex naming environments is very important. This book will go beyond looking at “how to run a name server” or “how to DNSSEC sign a domain”, Managing Mission Critical Domains & DNS looks across the entire spectrum of naming; from external factors that exert influence on your domains to all the internal factors to consider when operating your DNS. The readers are taken on a comprehensive guided tour through the world of naming: from understanding the role of registrars and how they interact with registries, to what exactly is it that ICANN does anyway? Once the prerequisite knowledge of the domain name ecosystem is acquired, the readers are taken through all aspects of DNS operations. Whether your organization operates its own nameservers or utilizes an outsourced vendor, or both, we examine the complex web of interlocking factors that must be taken into account but are too frequently overlooked. By the end of this book, our readers will have an end to end to understanding of all the aspects covered in DNS name servers.
Style and approachThe book is divided into two parts, the first part looks at the wider domain name ecosystem: registries, registrars and oversight policies.
The second and larger part goes into operations. Every aspect of naming is considered from the viewpoint of how this affects ones domains, what are the ramifications of different operating methods as portfolios scale.
Publisher resources
Table of contents
- Title Page
- Copyright and Credits
- Dedication
- Packt Upsell
- Contributors
- Preface
-
The Domain Name Ecosystem
- Why domains are important
-
Domain names 101
- Anatomy of a domain name
- Understanding the domain name expiry cycle
- Summary
- References
- Registries, Registrars, and Whois
- Intellectual Property Issues
- Communication Breakdowns
- A Tale of Two Nameservers
- DNS Queries in Action
- Types and Uses of Common Resource Records
- Quasi-Record Types
- Common Nameserver Software
- Debugging Without Tears – DNS Diagnostic Tools
-
DNS Operations and Use Cases
-
Transferring domain names
- Change of registrant
- Adding additional nameservers
- Syncing zone data across secondaries
- Planning migrations with DNS updates
- Moving to new nameservers
- Round Robin DNS
- Load-balancing/global weighted load-balancing
- DNS failover
- Dynamic DNS
- Geo DNS
- Zone apex aliasing
- Reverse DNS and netblock subdelegations
- Implementing SPF, DKIM, and DMARC
- Summary
- References
-
Transferring domain names
- Nameserver Considerations
-
Securing Your Domains and DNS
-
Protecting your domains from unauthorized manipulation
- Cybercriminals hack DNS provider to take over Brazilian bank
-
DNS Security Extensions (DNSSEC)
- What DNSSEC does
- Is DNSSEC really a magic bullet for DNS security?
- Drawbacks of using DNSSEC
- When to use DNSSEC
- Signing your zones
- Preparing a DNSSEC deployment
- Operational ramifications of DNSSEC
- DNSSEC Resource Record Types
- Maintaining DS keys after initial setup (CDS/CDNSKEY)
- NSEC/NSEC3
- PowerDNS
- BIND
- NSD
- Tinydns
- Key rollovers
- Securing DNS lookups
- Summary
- References
-
Protecting your domains from unauthorized manipulation
- DNS and DDoS Attacks
- IPv6 Considerations
- Other Books You May Enjoy
Product information
- Title: Managing Mission - Critical Domains and DNS
- Author(s):
- Release date: June 2018
- Publisher(s): Packt Publishing
- ISBN: 9781789135077
You might also like
video
Learning DNS
In this Learning DNS training course, expert author Cricket Liu will teach you about the theory …
book
DNS and BIND, 5th Edition
DNS and BIND tells you everything you need to work with one of the Internet's fundamental …
book
Networking and Kubernetes
Kubernetes has become an essential part of the daily work for most system, network, and cluster …
book
Certified Kubernetes Administrator (CKA) Study Guide
Exclusively on O'Reilly: Get more hands-on training and test your CKA exam readiness by working through …