DNSSEC in.edu Matt Larson Vice President, DNS Research.

Slides:



Advertisements
Similar presentations
GNSO goals Bruce Tonkin Chair, GNSO Council Sao Paulo, 4 Dec 2006.
Advertisements

ICANN Plan for Enhancing Internet Security, Stability and Resiliency.
L-Root: Expanding Distribution in Africa. 2 One of 13 root name servers containing Internet Protocol addresses Operated by ICANN using anycast technology.
Improving DNS contents in the RRR world Ólafur Guðmundsson Steve Crocker Oct.
REN-ISAC Research and Education Networking Information Sharing and Analysis Center AMSAC Update July 10,
Securing the Government’s DNS Infrastructure with DNSSEC
Aristotle Balogh February 2000 NSI Registry Update NANOG 18, San Jose, California Aristotle Balogh February 6, 2000.
DNS DOMAIN NAME SYSTEM NAME SYSTEM By Lijo George.
David L. Wasley Information Resources & Communications Office of the President University of California Directories and PKI Basic Components of Middleware.
1 DNSSEC BoF Internet2 Member Meeting October 15th, 2008 Noon, Napoleon A2
DNS Security Extensions (DNSSEC) Ryan Dearing. Topics History What is DNS? DNS Stats Security DNSSEC DNSSEC Validation Deployment.
Web Caching and CDNs March 3, Content Distribution Motivation –Network path from server to client is slow/congested –Web server is overloaded Web.
1 Secure DNS Solutions Rooster. 2 Introduction What does security mean for DNS? What security problems exist for DNS, what is being done about them, and.
1 China Internet Network Information Center ( CNNIC ) Administrative Practice of.CN Domain Names.
Domain Name System | DNSSEC. 2  Internet Protocol address uniquely identifies laptops or phones or other devices  The Domain Name System matches IP.
Revised Draft Strategic Plan 4 December 2010.
Supporting Internet Development Philip Smith, Learning and Development Director.
1 Deployment of an LCG Infrastructure in Australia How-To Setup the LCG Grid Middleware – A beginner's perspective Marco La Rosa
Establishing ccTLDs in Africa - Overcoming The Challenges Michuki Mwangi President AfTLD AfTLD Meeting 7th, April 2008 Johannesburg, South-Africa.
Security for the Internet’s Domain Name System DNSSEC Current State of Deployment Prepared for Internet2 BoF Amy Friedlander, Shinkuro, Inc. Based on a.
1 DNSSEC for the.edu Domain Becky Granger Director, Information Technology and Member Services EDUCAUSE April 29, 2010.
Towards a harmonised water quality and pollution risk management LLIV-303 project “HOTRISK” Anete Šturma Senior specialist of Inland Waters Division Expert.
CcNSO Finance Working Group: Survey on ICANN Contributions and Services Byron Holland March 11,
RFP for the.aero registry operator DAC 7 April 19, 2005 Geneva.
© Copyright 2007 Arbinet-thexchange, Inc. All Rights Reserved. VoIP Peering Pilot Using the Internet2 Backbone.
Bernard Turcotte President Canadian Internet Registration Authority Canada’s ccTLD ENUM CSCN Forum March 11, 2004.
©Richard L. Goldman Internet Organizations ©Richard Goldman September 25, 2002.
Challenges of Changing Internet Landscape Juhani Juselius,.FI.
Update for AP* Retreat Save Vocea Manager Regional Relations – Australasia/Pacific Islands Kuala Lumpur, 28 Feb 2010.
Internet Corporation for Assigned Names & Numbers Update on ITAR Elise Gerich Vice President, IANA.
Transit Revitalization Investment Districts Planning and Implementation of Act 238 of 2004 July 2006 Getting to TRID Lynn Colosi Clear View Strategies.
Advanced Next gEneration Mobile Open NEtwork Tridentcom th International Conference on Testbeds and Research Infrastructures for the Development.
2006 © SWITCH Grid Activities at SWITCH Christoph Witzig EGEE - 06 Geneva Sep 28, 2006.
Technical Area Report Byron Ellacott Technical Area Manager.
Erasmus Mundus Partnerships - Action 2, Strand 1 Lot8 (Kazakhstan, Kyrgyzstan, Tajikistan, Turkmenistan, Uzbekistan) Project: Euro-Asian Cooperation for.
Kenya Network Information Centre (KENIC). Introduction KENIC is the registry for the.KE ccTLD. Local and non-profit organization Mandate is to Manage.
Research and Education Networking Information Sharing and Analysis Center REN-ISAC John Hicks TransPAC2/Indiana University
DNSSEC deployment in NZ Andy Linton
Document Management Service MaestroTec, Inc. D ocument M anagement S ervice Improve the way you manage your critical business documents.
© 2004 VeriSign, Inc. RAPID GROWTH: LESSONS LEARNED FROM.COM/.NET VeriSign Bart Mackay February 2005.
DNSSEC-Deployment.org Secure Naming Infrastructure Pilot (SNIP) A.gov Community Pilot for DNSSEC Deployment JointTechs Workshop July 18, 2007 Scott Rose.
Landstar Application Case Study: Development Of Content-rich Solutions For The Mobile Employee Bob Leo Director of Professional Services October 15, 2000.
.LV today and tomorrow Katrīna Sataki, NIC.LV Riga, 19 April 2013.
SSAC review, Registry Transition Program ICANN Meeting, Cartagena, Colombia James Galvin, Afilias.
Joint Techs, Albuquerque Feb © 8 Feb 2006 Stichting NLnet Labs DNS Risks, DNSSEC Olaf M. Kolkman and Allison Mankin
1 CollegeKeys Compact: An Action Plan to Remove Barriers to College Access for Students from Low-Income Backgrounds Massachusetts Association of Student.
AU, March 2, DNSSEC, APNIC, & how EPP might play a Role Ed Lewis DNS SIG APNIC 21.
1 Discussion of the new DNS generation system DNS Operations SIG APNIC 18 2nd September 2004, Fiji.
1 Internet2 Joint Techs DNSSEC BOF July 19, DNSSEC BOF Larry J. Blunk, Merit Network Internet2 Joint Techs Workshop Madison, WI July 19, 2006.
Publishing zone scan data using an open data portal Sebastian Castro OARC Workshop Montreal – Oct 2015.
Project Presentation The CIARD RING “a Routemap to Information Nodes and Gateways (RING) that share information related to agricultural research and innovation.
Measures to prevent MITM attack and their effectiveness CSCI 5931 Web Security Submitted By Pradeep Rath Date : 23 rd March 2004.
The STARS Program AASHE’s Sustainability Tracking, Assessment & Rating System.
OneM2M Partnership Project. Contents Introduction Founding Partners Participation Scope & Objectives Structure Deliverables Contacts © 2013 oneM2M Partners.
Internet2 DNSSEC Pilot Shumon Huque University of Pennsylvania ESCC/Internet2 Joint Techs Workshop Madison, Wisconsin, U.S.A., July 19 th 2006.
.aero Status DAC Meeting February 25, ICANN, Policy and Communications ICANN agreement signed on December 17, 2002 Web site
NGA Center for Best Practices January 10, 2001 Charleston, South Carolina National Environmental Information Exchange Network Kim Nelson Pennsylvania Department.
Agency of statistics of the Republic of Kazakhstan Astana, 2014 Prospects for the SDMX standard implementation in the Agency of statistics of the Republic.
Trusted Electronic Communications for Federal Student Aid Mark Luker Vice President EDUCAUSE Copyright Mark Luker, This work is the intellectual.
REN-ISAC Research and Education Networking Information Sharing and Analysis Center Doug Pearson REN-ISAC Director Internet2 Security WG BoF October 14,
Faculty Promotion and Tenure Workshop Monday, April 18, 2016 Melissa Crawford Office of Faculty Development and Advancement Binder Review.
Igor Mkrtumyan AM Registry ISOC AM
Principles of Computer Security
Unit 36: Internet Server Management
DNSSEC: An Update on Global Activities
.edu DNSSEC Testbed Lessons Learned
David W. Mogk Dept. of Earth Sciences Montana State University
Name__________________________________
Archiving and preservation services in the cloud
Presentation transcript:

DNSSEC in.edu Matt Larson Vice President, DNS Research

2 2 Who’s Who  EDUCAUSE –“EDUCAUSE is a nonprofit association whose mission is to advance higher education by promoting the intelligent use of information technology.” –Registry operator (business perspective) for.edu –Cooperative agreement with U.S. DoC –Sole registrar for.edu names  VeriSign –Operator of critical Internet infrastructure –Registry operator (technical perspective) for.edu –Subcontractor to EDUCAUSE

3 3 DNSSEC in.edu  DNSSEC deployment in.edu is a partnership between EDUCAUSE and VeriSign  EDUCAUSE –DNSSEC-enable registrar systems –Accept key material from.edu registrants –Submit key material to VeriSign –Participate in test bed with selected institutional partners  VeriSign –DNSSEC-enable registry system –Accept key material from.edu registrar –Publish signed.edu zone –Participate in test bed

4 4 Testbed Details  Small number of institutions invited by EDUCAUSE to participate  End-to-end testing: Institution  EDUCAUSE  VeriSign  Test bed.edu zone file  Test bed zone hosted on publicly accessible name servers  Benefits: –EDUCAUSE and VeriSign can exercise new DNSSEC systems –Institutions gain experience, watch changes flow from UI to signed zone  Test bed will not track production.edu contents –Production data copied to test bed once –Test bed contents will diverge over time

5 5 5 Questions + Answers