DNS Traffic Management and DNS data mining Making Windows DNS Server Cloud Ready ~Kumar Ashutosh, Microsoft.

Slides:



Advertisements
Similar presentations
Network Systems Sales LLC
Advertisements

Distributed Data Processing
Emmanouel (Manos) Varvarigos Computer Technology Institute and Press "Diophantus“, CTI Greece Gathering and Processing Energy Consumption Data from Greek.
Sergei Komarov. DNS  Mechanism for IP hostname resolution  Globally distributed database  Hierarchical structure  Comprised of three components.
Chapter 8 Managing Windows Server 2008 Network Services
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 6 Managing and Administering DNS in Windows Server 2008.
How to Succeed with Active Directory Robert Williams, PhD CEO Secure Logistix Corporation.
June 2007APTLD Meeting/Dubai ANYCAST Alireza Saleh.ir ccTLD
Unleashing the Power of Ubiquitous Connectivity with IPv6 Sandeep K. Singhal, Ph.D Director of Program Management Windows Networking.
Module 3 Windows Server 2008 Branch Office Scenario.
1 Week #1 Objectives Review clients, servers, and Windows network models Differentiate among the editions of Server 2008 Discuss the new Windows Server.
1 Week #1 Objectives Review clients, servers, and Windows network models Differentiate among the editions of Server 2008 Discuss the new Windows Server.
MS DB Proposal Scott Canaan B. Thomas Golisano College of Computing & Information Sciences.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
SERVER LOAD BALANCING Presented By : Priya Palanivelu.
Lesson 20 – OTHER WINDOWS 2000 SERVER SERVICES. DHCP server DNS RAS and RRAS Internet Information Server Cluster services Windows terminal services OVERVIEW.
Hands-On Microsoft Windows Server 2003 Administration Chapter 9 Administering DNS.
Hussain Ali Department of Computer Engineering KFUPM, Dhahran, Saudi Arabia Microsoft Networking.
Domain Name System ( DNS )  DNS is the system that provides name to address mapping for the internet.
Pro Exchange SPAM Filter An Exchange 2000 based spam filtering solution.
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Windows Server 2008 Chapter 8 Last Update
Lecturer : Ms.Trần Thị Ngọc Hoa Chapter 2 Methods Configuring Name Resolution Methods.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Event Viewer Was of getting to event viewer Go to –Start –Control Panel, –Administrative Tools –Event Viewer Go to –Start.
11.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
Upgrading the Platform - How to Get There!
Network discovery Multi- server mgmt (MSM) Visibility & audit.. Automatic discovery of DC, DHCP and DNS servers, and dynamic IP addresses.
Overview of Active Directory Domain Services Lesson 1.
SharePoint Farm On Azure IAAS Prepared By : Prakhar Rastogi Premier Field engineer Microsoft India.
Barracuda Load Balancer Server Availability and Scalability.
Microsoft Windows Server 2003 TCP/IP Protocols and Services Technical Reference Slide: 1 Lesson 17 Domain Name System (DNS)
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.1 ISP Services Working at a Small-to-Medium Business or ISP – Chapter 7.
Summary Device protocols tied intimately to applications. A need to significantly reduce critical data update times. Current network bandwidth consumption.
Module 8 Configuring and Securing SharePoint Services and Service Applications.
Module 2: Implementing DNS to Support Active Directory
Company LOGO mDNS (ICM3400) Proposal for Hierarchical Multicast Session Directory Architecture Piyush Harsh & Richard Newman.
1 Chapter 6: Proxy Server in Internet and Intranet Designs Designs That Include Proxy Server Essential Proxy Server Design Concepts Data Protection in.
1 Chapter Overview Installing the TCP/IP Protocols Configuring TCP/IP.
October 8, 2015 University of Tulsa - Center for Information Security Microsoft Windows 2000 DNS October 8, 2015.
Module 3: Designing IP Addressing. Module Overview Designing an IPv4 Addressing Scheme Designing DHCP Implementation Designing DHCP Configuration Options.
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
5.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 5: Planning.
1 Chapter 7: NAT in Internet and Intranet Designs Designs That Include NAT Essential NAT Design Concepts Data Protection in NAT Designs NAT Design Optimization.
Module 11: Implementing ISA Server 2004 Enterprise Edition.
DHCPv6 Redundancy Considerations Redundancy Proposals in RFC 6853.
Module 6: Designing Name Resolution. Module Overview Collecting Information for a Name Resolution Design Designing a DNS Server Strategy Designing a DNS.
Page 1 Active Directory and DNS Lecture 2 Hassan Shuja 09/14/2004.
© F5 Networks, Inc. 1 How Does DNS Work? A user browses to A user browses to
Chapter 3 Selecting the Technology. Agenda Internet Technology –Architecture –Protocol –ATM IT for E-business –Selection Criteria –Platform –Middleware.
Introduction to Active Directory
1 Chapter 13: RADIUS in Remote Access Designs Designs That Include RADIUS Essential RADIUS Design Concepts Data Protection in RADIUS Designs RADIUS Design.
11.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
Features Of SQL Server 2000: 1. Internet Integration: SQL Server 2000 works with other products to form a stable and secure data store for internet and.
IPSec – IP Security Protocol By Archis Raje. What is IPSec IP Security – set of extensions developed by IETF to provide privacy and authentication to.
MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition (70-294) Chapter 1: Overview of the Active.
Monitoring, analyzing and cleaning DNS configuration errors across European NRENs Slavko Gajin University of Belgrade, Serbia
Overview of Active Directory Domain Services Lesson 1.
Network services management of Cloud Datacenter Automatic server discovery Single console DHCP and DNS management across datacenters Management of granular.
Barracuda NG Firewall ™
IMPLEMENTING NAME RESOLUTION USING DNS
Benefits of Using Domain Name System (DNS)
DNS.
Working at a Small-to-Medium Business or ISP – Chapter 7
Working at a Small-to-Medium Business or ISP – Chapter 7
Business Intelligence for Project Server/Online
Working at a Small-to-Medium Business or ISP – Chapter 7
Application Performance & Availability with vCloud Hybrid Service and KEMP Technologies New York: • Limerick: • Hannover:
Presentation transcript:

DNS Traffic Management and DNS data mining Making Windows DNS Server Cloud Ready ~Kumar Ashutosh, Microsoft

Windows DNS Server ▪Widely deployed in enterprises ▪Fair presence in the DNS resolver space ▪Standards compliant and interoperable ▪Secure and scalable

Needs of DNS server in cloud ▪Policy based traffic management ▪Audit and billing mechanism for DNS service ▪The DNS data mine and analytics ▪Security and High availability

Policy based Traffic Management ▪DNS Policy is Windows DNS Server construct that allows DNS administrators to control the DNS Query processing in order to achieve : ▪Global Traffic Management, ▪Application Load Balancing, ▪Intelligent DNS responses based on communication protocol (IPV4 or V6) or transport protocol (UDP and TCP), ▪Applying tenant specific filters for black holing, parental control etc. ▪Split-Brain DNS Deployment … and much more

Anatomy of a policy Criteria Any combination of Client Subnet, Server Interface IP, FQDN, Internet protocol (IPV4/V6), Transport Protocol (UDP/TCP), Time Of Day, Query Type Action If policy matches what action to take : ALLOW, DENY, IGNORE ? ? Content If Action is allow, what data to respond with and in what ratio.

Capabilities High Availability Improve availability of critical applications by failover policies Traffic Management Location aware responses Load Balancing Application Load Balancing based on the performance of host ? ? Filters Black Hole and Filters Time of day Time of day based policies Split Brain Split Brain DNS

DNS Audit Trail What changed? -Zone -Server -Record What? Who changed? -DC admin -Tenant admin Who? -For Reporting -Audit Trails -diagnostics When?

DNS Data mine Actionable Information Pattern discovery Data Preparation Data collection

DNS Data mine : Data Collection ▪Collect data from every DNS server ▪Centralized system for collection ▪Real time collection with minimal performance impact ▪Kinds of Data collected: ▪All DNS transactions ▪Queries/responses ▪XFR ▪Dynamic updates ▪Server state ▪Health indicators ▪Performance counters

DNS Data mine : Data Preparation ▪Cleaning the data ▪Data transformation ▪Creating relational databases for different purposes ▪Related calculations – like amplification factor, frequency etc. ▪Collation of data across the server farm ▪Correlation of data ▪Across multiple servers ▪Between single user ▪Relationship with state of the server. ▪Rolling over with knowledge transfer.

DNS Data mine: Pattern Discovery ▪Domain name analysis, ▪Amplification analysis ▪User behaviour analysis ▪Client subnet analysis ▪Security analysis

DNS Data mine: Actionable Information ▪User behaviour analytics ▪Load model ▪DDoS detection

Thank You