Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May 2001. The whois Database Introduction and Usage.

Slides:



Advertisements
Similar presentations
Protecting Resource Records in APNIC Whois Database Database SIG APNIC-16, Seoul August 2003 Sanjaya
Advertisements

Handling Internet Network Abuse Reports at APNIC 21 October 2010 LAP-CNSA Workshop, Melbourne George Kuo.
Courtesy: Nick McKeown, Stanford Umar Kalim, NIIT 1 Border Gateway Protocol Tahir Azim.
Save Vocea/ Sanjaya - APNIC PacINET November 2002, Fiji APNIC Whois Tutorial.
Database Update Kaveh Ranjbar Database Department Manager, RIPE NCC.
Sweeping lame DNS reverse delegations APNIC16 – DNS Operations SIG Seoul, Korea, 20 August 2003.
1 prop-018-v001 Protecting historical records in the APNIC Whois Database Project Update DB SIG APNIC18 2 September 2004 Nadi, Fiji Sanjaya, Project Manager,
Welcome! APNIC Members Training Course Internet Resource Management I 27 April 2004, Melbourne.
APNIC Internet Routing Registry An introduction to the IRR TWNIC Meeting, 3 December 2003 Nurani Nimpuno, APNIC.
Welcome! APNIC Members Training Course Internet Resource Management Essentials 20 October 2003, Kuala Lumpur, Malaysia In conjunction with the 1 st ASEAN.
RPSL: Police’ing’ the Net Anwar M. Haneef Electrical and Computer Engineering University of Massachusetts, Amherst.
Andrei Robachevsky, Shane Kerr. APNIC/APRICOT2001, February 2001, Kuala Lumpur, Malaysia. 1 Routing Registry Consistency Check Presented.
Reverse DNS. Overview Principles Creating reverse zones Setting up nameservers Reverse delegation procedures.
Overview What are the provisioning methods used in the Australian registry system? How are these provisioning systems secured?
Local Internet Registries. Training Course. 1 Welcome to the IP Tutorial 26 January 2001 RIPE Network Co-ordination Centre
Local Internet Registries. Training Course. 1 Welcome to the Local Internet Registry Course RIPE Network Co-ordination Centre NEW version.
Providing A Subset of Whois Data Via DNS Shuang Zhu Xing Li CERNET Center.
Local Internet Registries. Training Course. 1 Welcome to the Local Internet Registry Course RIPE Network Co-ordination Centre NEW version.
NATO Advanced Networking Workshop. Ljubljana, 19 September “How to Run a Local Internet Registry” or all your IPs are belong.
A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Database SIG APNIC Database Privacy Issues 1 March 2001 APRICOT, Malaysia Fabrina.
Network Abuse Handling in CNNIC and JPNIC Terence Zhang, CNNIC Izumi Okutani, JPNIC.
Scaling IXPs Scalable Infrastructure Workshop. Objectives  To explain scaling options within the IXP  To introduce the Internet Routing Registry at.
The APNIC Whois Database Introduction and Usage. whois.apnic.net whois.ripe.netwhois.arin.net Server Unix Client ‘X’ Client Command Prompt / Web Interface.
Prepared by The Regional Internet Registries [APNIC, ARIN, LACNIC and RIPE NCC]
Database Update Paul Palse Database Manager, RIPE NCC.
Part 2.
Database Update Kaveh Ranjbar Database Department Manager, RIPE NCC.
Welcome! APNIC Members Training Course Internet Resource Management Essentials 31 August 2004, Nadi, Fiji APNIC -18 Open Policy Meeting.
Policy implementation and document status report Address Policy SIG APNIC 15, Taipei, Taiwan 27 February 2003.
IP address Allocation & and Requests AfNOG Workshop, May 2004 Dakar, Senegal.
NATO Advanced Networking Workshop. Ljubljana, 19 September RIPE whois Database RIPE Network Coordination Centre.
Denis Walker. RIPE 45, May 2003, Barcelona. 1 DBupdate Denis Walker RIPE NCC.
APNIC Internet Routing Registry An introduction to the IRR TWNIC Meeting, 3 December 2003 Nurani Nimpuno, APNIC.
Internet2 Routing Working Group Merit Route Registry Update July 30, 2002 Larry Blunk.
1 Use role objects …to maintain your contacts in APNIC whois.
18th APNIC Open Policy Meeting SIG: DB Thursday 2 September 2004 Nadi, Fiji Chair: Xing Li.
Consultation on Policy Documentation Adam Gosling APNIC 40 Policy SIG 10 September 2015.
Welcome! APNIC Members Training Course Internet Resource Management Essentials November 2003, Beijing, China Sponsored by CNNIC.
REVERSE DNS Why and how AFRINIC-II Maputo,Mozambique 26 April 2005 Alain AINA.
1 To Insert AS Origin field into APNIC IP address database Xing Li Shuang Zhu CERNET
Andrei Robachevsky. APNIC/APRICOT2001, February 2001, Kuala Lumpur, Malaysia. 1 New Version of the RIPE Database Andrei Robachevsky.
Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May IP Address Management AfNOG Workshop, 11 May 2001 Accra, Ghana presented by:
1 IPv6 Allocation Policy and Procedure Global IPv6 Summit in China 2007 April 13, 2007 Gerard Ross and Guangliang Pan.
Whois Domain Object Authorisation APNIC18 – DB SIG Nadi, Fiji 2 September 2004.
MyAPNIC Survey 2015 What have we learned? APNIC Services Vivek Nigam 9 September 2015 Jakarta.
APNIC Security Update APSIRCC 2002 Tokyo, 25 March 2002.
Database Tutorial 3 September, Kitakyushu, Japan 14 th APNIC Open Policy meeting APNIC.
IP Addressing and ICT Development in the Pacific Islands Anne Lord and Save Vocea, APNIC ICT Workshop, Fiji, November, 2002.
Andrei Robachevsky. 12th APNIC Open Plicy Meeting, August 2001, Taipei, Taiwan. 1 New Version of the RIPE Database Andrei Robachevsky.
Local Internet Registries. RIPE 47 - IP Request Tutorial. 1 Welcome to the RIPE NCC IP Request Tutorial January 27, 2003 RIPE Network.
DNS Security 1. Fundamental Problems of Network Security Internet was designed without security in mind –Initial design focused more on how to make it.
APNIC Internet Routing Registry Tutorial Seoul 19 August 2003.
A week in the life of (IRT address) Frank Salanitri Project & Systems Services Manager, APNIC.
1 The Internet Registry System Mirjam Kühne RIPE NCC EC-POP Brussels 5 July 1999.
APNIC abuse procedures Network abuse BOF. Types of abuse reported Spam Hacking Viruses Identity/credit card fraud Threats and stalking.
A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E APNIC Open Address Policy Meeting APNIC Reverse DNS October 26th, Brisbane Bruce.
17 th APNIC Open Policy Meeting APNIC IPv6 Address Guidelines Akira Nakagawa )/ POWEREDCOM Billy MH Cheon / KRNIC Toshiyuki.
JPNIC UPDATE ~ Personal Data Protection in JPNIC WHOIS ~ Toshiyuki Hosaka Japan Network Information Center (JPNIC) September 7 th, 2005 NIR SIG APNIC
1 To Insert AS Origin field into APNIC IP address database Xing Li Shuang Zhu CERNET
RIPE 47: IPv6 WG 27 January 2004 Hotel Krasnapolsky, Amsterdam Jeroen Massar IPv6 Golden Networks.
Mirjam Kühne. AfNOG Conference, 11 May Operational Co-ordination in the RIPE Region presented by: Mirjam Kühne RIPE NCC.
RADIUS By: Nicole Cappella. Overview  Central Authentication Services  Definition of RADIUS  “AAA Transaction”  Roaming  Security Issues and How.
Whois & Data Accuracy Across the RIRs. Terms ISP – An Internet Service Provider is allocated address space by an RIR for the purpose of providing connectivity.
1 FRED – open source registry system CZ.NIC, z.s.p.o. Jaromír Talíř
Whois Update Guangliang Pan. Overview Differences between APNIC and RIPE Whois Databases Change mnt-by from member’s maintainer to APNIC-HM for aut-num.
IPv6 address deployment status Paul Wilson, APNIC
AFRINIC Services Update
RIPE Whois Database Software Recent Changes
A Proposal to Protect Historical Records in APNIC Whois Database
Proposal to Deprecate MAIL-FROM in Maintainer Object
Presentation transcript:

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May The whois Database Introduction and Usage

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Overview What is the whois database? Why use it? Who uses it? Database query process Database update process

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May What is the whois Database? Network Management Database Contains information about –address space –DNS domains –IP routing policies –contact information

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Why use the Database? Queries –Ascertain custodianship of a resource –Obtain details of technical contacts for a network –Investigate security incidents –Track source of network abuse or “spam” Updates –Register use of Internet resources –IP networks, ASNs, reverse DNS, etc. –Update existing records –Fulfill responsibilities as resource holder

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Who uses the Database ? Queries –Internet Service Providers –Site network managers and engineers –Any Internet user Updates –Internet registries (RIRs, LIRs) –Internet Service Providers –Anyone who holds an Internet resource

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Objects Database object types OBJECT PURPOSE personcontact persons rolecontact groups/roles inetnumIPv4 address allocations/assignments inet6numIPv6 address allocations/assignments aut-numautonomous system number as-macrogroup of autonomous systems domainreverse domains routeprefixes being announced mntner(maintainer) database authorisation

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Contact Information Example object - ‘person’ person: address: country: phone: fax-no: nic-hdl: mnt-by: changed: source: Brajesh Jain B 115 SARVODAYA ENCLAVE NEW DELHI TH BJ16-AP MAINT-IN-ESTEL-BCJ APNIC Attributes Values

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Network Information Example object - ‘inetnum’ inetnum: netname: descr: country: admin-c: tech-c: mnt-by: mnt-lower: changed: source: TOTNET-AP Telephone Organization of THAILAND(TOT) Telephone and IP Network Service Provider TH NM18-AP RC80-AP APNIC-HM MAINT-TH-SS163-AP APNIC Attributes Values

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Query - Search Keys OBJECT TYPE ATTRIBUTES - SEARCH KEYS *whois supports queries on any of these objects/keys name, nic-hdl, maintainer name network number, name domain name as number as-macro name route value network number, name person role mntner inetnum domain aut-num as-macro route inet6num

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Query - Inetnum Notes Notes Incomplete addresses padded with “.0” Incomplete addresses padded with “.0” Address without prefix interpreted as “/32” Address without prefix interpreted as “/32” % whois % whois SINGNET-SG % whois /19 inetnum: netname: SINGNET-SG descr: Singapore Telecommunications Ltd descr: 31, Exeter Road, #02-00, Podium Block descr: Comcentre, 0923 country: SG admin-c: CWL3-AP tech-c: CWL3-AP mnt-by: APNIC-HM changed: source: APNIC

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Query - Inetnum RIPE extended whois client ftp://ftp.ripe.net/ripe/dbase/software/ripe-dbase-3.0.tar.gz Flags used for inetnum queries Nonefind exact match - L find all less specific matches - m find first level more specific matches - M find all More specific matches - r turn off recursive lookups

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May /23 Database Query - Inetnum inetnum hierarchy: whois /16 All less specifics (-L) 210/7 0/0 Exact match 210.8/16 All more specifics (-M) 1st level more Specific (-m)

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May ‘-M’ will find all assignments in a range in the database inetnum: netname:SILNET-AP descr: Satyam Infoway Pvt.Ltd.,..... inetnum: netname: SOFTCOMNET descr: SOFTCOM LAN (Internet)IP inetnum: descr: SILNET descr: Satyam Infoway's Chennai LAN..... % whois -M /19 Database Query - Inetnum

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May inetnum: netname: NECTW-BIGLOBE descr: ISP Division of NEC Taiwan Ltd. country: TW admin-c: SC23-AP tech-c: EC119-AP …… aut-num: AS9283 as-name: NECTW-AS descr: ISP Division of NEC Taiwan Ltd. tech-c: EC119-AP mntner: NECTW-ISP-AP descr: NEC Biglobe Taiwan wide admin-c: SC23-AP tech-c: EC119-AP person: Emily Hui Chou address: ISP Division of NEC Taiwan Ltd. country: TW phone: nic-hdl: EC119-AP % whois -i person EC119-AP Database Query - Inverse

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Whois Web Interface

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Whois Web Interface

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Query - Options Summary of other flags - iinverse lookup on given attribute - T search only for objects of given type - tgive template for given type - vverbose information for given type - hspecify database server site For more information try... whois -h whois.apnic.net HELP whois -h whois.ripe.net HELP

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Update Process – requests to –Each request contains an object template Update Request Parse Warnings/Errors returned Error Auth. Data Base Whois Server

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Database Update Process Update transactions –Create a new object –Change attributes of an object –Deletean object Updates are submitted by to: message contains template with new or updated object Template

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Object Template whois -t Recognised by the RIPE whois client/server person: [mandatory] [single] [primary/look-up key] address: [mandatory] [multiple] [ ] country: [optional] [single] [ ] phone: [mandatory] [multiple] [ ] fax-no: [optional] [multiple] [ ] [optional] [multiple] [look-up key] nic-hdl: [mandatory] [single] [primary/look-up key] remarks: [optional] [multiple] [ ] notify: [optional] [multiple] [inverse key] mnt-by: [optional] [multiple] [inverse key] changed: [mandatory] [multiple] [ ] source: [mandatory] [single] [ ] % whois -h whois.ripe.net -t person

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Parse Database Update Process Automatic request processing –Automatic “robot” for all database updates – template for create/update/delete Templates are syntax checked –Warnings –Errors Database service support

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Data Protection Authorisation –“mnt-by” attribute references a “mntner” (maintainer) object –“mnt-by” should be used with every object Authentication –Updates to an object must pass authentication rule specified by its maintainer object Auth.

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Data Protection Failed Authorisation –Template NOT corrected and object NOT accepted –Automatic notification sent to requestor –Automatic notification sent to “notify” address Successful update –If Parse and Auth. steps succeed, database is updated –Confirmation by to requestor

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May –Maintainer object example Authentication/Authorisation inetnum: /24 descr: SYNFUX-NET mnt-by:MAINT-AU-SYNFLUX mntner:MAINT-AU-SYNFLUX descr:Synflux International Pty. country:AU admin-c: UG1-AP tech-c: UG1-AP upd-to: mnt-nfy: auth: CRYPT-PW apnbVcktyz6UY mnt-by: MAINT-AU-SYNFLUX changed:

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Authentication/Authorisation Maintainer specific attributes –notify: Sends notification of any changes to maintained objects to address specified –mnt-by: Maintainers must also be protected! (Normally by themselves) –auth: Authentication method for this maintainer

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Authentication/Authorisation ‘auth’ attribute gives authentication method –NONE Strongly discouraged! –MAIL-FROM Very weak authentication. Discouraged –CRYPT-PW Crypt (Unix) password encryption Use web page to create your maintainer –PGP-KEY

Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May Questions