This Open Source Guide is about DNS and (mostly) BIND 9.x on Linux (Fedora Core), BSD's (FreeBSD, OpenBSD and NetBSD) and Windows (Windows 7 and 10). It is meant for newbies, Rocket Scientist wannabees and anyone in between.
This Guide was born out of our first attempts a number of years ago at trying to install a much needed DNS service on an early Redhat Linux system. We completed the DNS 'rite of passage' and found it a pretty unedifying and pointless experience.
Health Warning: This is still a work-in-progress. If you find errors don't grumble - tell us. Look at our to do list and if you want to contribute something please do so.
<gratuitous publicity> The newly published book Pro DNS and BIND was largely based on this material but significantly extends it - including DNS security (including DNSSEC.bis), IPv6, DNS APIs and complete reference sections on named.conf and RR types. We are outrageously biased but think it is an essential addition to the DNS admin's library. </gratuitious publicity>
Full caching DNS resolver implementation
The Knot Resolver is a caching full resolver implementation, including both a resolver library and a daemon.
Shell script to test the performance of the most popular DNS resolvers from your location.
Includes by default:
CloudFlare 1.1.1.1
Google 8.8.8.8
Quad9 9.9.9.9
OpenDNS
Norton
CleanBrowsing
Yandex
AdGuard
Neustar
Comododnsdist is a highly DNS-, DoS- and abuse-aware loadbalancer. Its goal in life is to route traffic to the best server, delivering top performance to legitimate users while shunting or blocking abusive traffic.
dnsdist is dynamic, its configuration language is Lua and it can be can be changed at runtime, and its statistics can be queried from a console-like interface or an HTTP API.
A configuration to balance DNS queries to several backend servers:
CoreDNS is a DNS server that chains middleware. Each middleware implements some DNS feature, like service discovery.
Service Discovery
CoreDNS integrates with Kubernetes via the Kubernetes middleware or directly with etcd with the etcd middleware.
Middlewares
Currently CoreDNS supports (among others) the following middlewares:
chaos: respond to CH class queries
dnssec: on-the-fly DNSSEC signing of records
etcd: SkyDNS replacement
file: serve DNS from a set of files
health: simple health check
kubernetes: use CoreDNS as a KubeDNS replacement
loadbalance: shuffle A and AAAA records
metrics: Prometheus metrics
pprof: Go profiling
proxy: forward queries to an upstream (recursive) server
rewrite: rewrite incoming queries
secondary: be a secondary nameserver and retrieve zones from a primary
"Classic" DNS fully supported
Serve DNS data from a set of files, DNSSEC signed or not.
Or just enable on-the-fly DNSSEC signing.
Straightforward DNS hosting services
Being one of leading DNS hosting providers, we always strive to provide the best possible feature set to our users. With the help of our users, we continue to improve the feature set and functionality of YDNS by adding useful features. This community driven approach makes YDNS special.
The feature set currently includes:
Unlimited hosts1 per user
Dynamic DNS for hosts, which can be used to have your home network on a permanent hostname (like example.ydns.io)
Full DNS hosting for your own domains
Backup DNS
DNSSEC2 support
A lightweight API that works with most DynDNS implementations
1 based on fair-use model, 2 DNSSEC is not available for all DNS zones
Ein Ansatz, den Schlüsselaustausch im PGP-System sicherer und für den Benutzer einfacher zu gestalten, ist der OPENPGPKEY-Draft der IETF. Mit der dort beschriebenen Methode kann der Besitzer einer E-Mailadresse den zur Adresse passenden (öffentlichen) PGP-Schlüssel im DNS veröffentlichen.
ldap alternative. athena project
Publishing PGP keys is a pain. There are many disjoint keyservers, three or four networks of which, which do (or don't) share information with each other. Some are corporate, some are private. And it's a crapshoot as to whose key is going to be on which, or worse, which will have the latest copy of a person's key.
For a long time, GPG has had a way to publish keys in DNS, but it hasn't been well documented. This document hopes to change that.
libuv is a multi-platform support library with a focus on asynchronous I/O. It was primarily developed for use by Node.js, but it’s also used by Luvit, Julia, pyuv, and others.