A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E APNIC Open Address Policy Meeting APNIC Reverse DNS October 26th, Brisbane Bruce.

Slides:



Advertisements
Similar presentations
Operational Policies for NIRs in the APNIC Region NIR Meeting APNIC14, Kitakyushu, Japan 4 Sept 2002.
Advertisements

Managing IP addresses for your private clouds 2013 ASEAN CAS Summit Bangkok, Thailand 7 February 2013 George Kuo Member Services Manager.
Handling Internet Network Abuse Reports at APNIC 21 October 2010 LAP-CNSA Workshop, Melbourne George Kuo.
Save Vocea/ Sanjaya - APNIC PacINET November 2002, Fiji APNIC Whois Tutorial.
Sweeping lame DNS reverse delegations APNIC16 – DNS Operations SIG Seoul, Korea, 20 August 2003.
2.1 Installing the DNS Server Role Overview of the Domain Name System Role Overview of the DNS Namespace DNS Improvements for Windows Server 2008 Considerations.
Implementing Domain Name System
Domain Name System. DNS is a client/server protocol which provides Name to IP Address Resolution.
Reverse DNS.
A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E APNIC Open Address Policy Meeting What is Reverse DNS October 26th, Brisbane Bruce.
Application Layer At long last we can ask the question - how does the user interface with the network?
1 [prop-038] Proposal to amend APNIC Lame DNS reverse delegation policy Policy SIG 7 Sep 2006 APNIC 22, Kaohsiung, Taiwan Terry Manderson.
Hands-On Microsoft Windows Server 2003 Networking Chapter 6 Domain Name System.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 7: Planning a DNS Strategy.
Module 12: Domain Name System (DNS)
Reverse DNS. Overview Principles Creating reverse zones Setting up nameservers Reverse delegation procedures.
Domain Name Services Oakton Community College CIS 238.
Understanding Active Directory
11.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
DNS. Introduction What is DNS? –Hierarchy or Tree –Dot used as a separator.
Local Internet Registries. Training Course. 1 Welcome to the IP Tutorial 26 January 2001 RIPE Network Co-ordination Centre
Anne Lord & Mirjam Kühne. AfNOG Workshop, 10 May The whois Database Introduction and Usage.
Providing A Subset of Whois Data Via DNS Shuang Zhu Xing Li CERNET Center.
A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Database SIG APNIC Database Privacy Issues 1 March 2001 APRICOT, Malaysia Fabrina.
Implementing DNS Module D 7: Implementing DNS
The APNIC Whois Database Introduction and Usage. whois.apnic.net whois.ripe.netwhois.arin.net Server Unix Client ‘X’ Client Command Prompt / Web Interface.
1 APNIC reverse DNS management roadmap DNS operations SIG, APNIC 21 2 March 2006.
DNS and C# SWE 344 Internet Protocols & Client Server Programming.
Part 2.
DNS Concepts APNIC 16, Seoul, Korea 19, August 2003.
1 San Diego, California 25 February Securing Routing: RPKI Overview Mark Kosters Chief Technology Officer.
COMP210 DNS Module Domain Name Service Dr Ahmad Al-Zubi.
DNS Related Commands Sayed Ahmed Computer Engineering, BUET, Bangladesh (Graduated on 2001 ) MSc, Computer Science, U of Manitoba, Canada
DNS Zones. DNS records kept in zones DNS server is authoritative for a domain if it hosts the zone for that domain Sub-domains can be kept in same zone.
Secured Dynamic Updates. Caution Portions of this slide set present features that do not appear in BIND until BIND 9.3 –Snapshot code is available for.
NATO Advanced Networking Workshop. Ljubljana, 19 September RIPE whois Database RIPE Network Coordination Centre.
1 Use role objects …to maintain your contacts in APNIC whois.
Status report on Lame Delegations (work in progress) George Michaelson DB SIG APNIC17/APRICOT 2004 Feb KL, Malaysia.
Registries and Registrars Dr Bruce Tonkin Chief Technology Officer Melbourne IT Ltd 3 March 03.
Configuring Name Resolution and Additional Services Lesson 12.
1 Domain Name System (DNS). 2 3 How DNS Works Application Transport Internet Network Application Transport Internet Network DNS Resolver Name Server.
REVERSE DNS Why and how AFRINIC-II Maputo,Mozambique 26 April 2005 Alain AINA.
Sweeping Lame DNS Delegations A Proposal DNS OPS SIG APNIC 15, Taipei, Taiwan 26 February 2003.
1 Madison, Wisconsin 9 September14. 2 Security Overlays on Core Internet Protocols – DNSSEC and RPKI Mark Kosters ARIN Engineering.
1 To Insert AS Origin field into APNIC IP address database Xing Li Shuang Zhu CERNET
Andrei Robachevsky. APNIC/APRICOT2001, February 2001, Kuala Lumpur, Malaysia. 1 New Version of the RIPE Database Andrei Robachevsky.
1 Discussion of the new DNS generation system DNS Operations SIG APNIC 18 2nd September 2004, Fiji.
Whois Domain Object Authorisation APNIC18 – DB SIG Nadi, Fiji 2 September 2004.
1 APNIC Update 19 June 2006, Apia, Samoa In conjunction with PacNOG2.
APNIC Security Update APSIRCC 2002 Tokyo, 25 March 2002.
DNS DNS overview DNS operation DNS zones. DNS Overview Name to IP address lookup service based on Domain Names Some DNS servers hold name and address.
Database Tutorial 3 September, Kitakyushu, Japan 14 th APNIC Open Policy meeting APNIC.
Draft Policy ARIN : Remove NRPM section 7.1.
Andrei Robachevsky. 12th APNIC Open Plicy Meeting, August 2001, Taipei, Taiwan. 1 New Version of the RIPE Database Andrei Robachevsky.
Local Internet Registries. RIPE 47 - IP Request Tutorial. 1 Welcome to the RIPE NCC IP Request Tutorial January 27, 2003 RIPE Network.
1 Lame delegation status report DNS Operations SIG APNIC , Hanoi.
IP Address Allocation Procedure in KRNIC Aug. 30 th, 2001 Moo-Ho Cheon Korea Network Information Center.
OPTION section It is the first section of the named.conf User can use only one option statement and many option-value pair under the section. Syntax is.
17 th APNIC Open Policy Meeting APNIC IPv6 Address Guidelines Akira Nakagawa )/ POWEREDCOM Billy MH Cheon / KRNIC Toshiyuki.
Hostway Confidential & Proprietary Introduction to Web Hosting.
Aug 2008 KRNIC of NIDA KRNIC Updates.
1 To Insert AS Origin field into APNIC IP address database Xing Li Shuang Zhu CERNET
Internet Naming Service: DNS* Chapter 5. The Name Space The name space is the structure of the DNS database –An inverted tree with the root node at the.
Monitoring, analyzing and cleaning DNS configuration errors across European NRENs Slavko Gajin University of Belgrade, Serbia
Domain Name System The Technology Context Presentation.
1 FRED – open source registry system CZ.NIC, z.s.p.o. Jaromír Talíř
DNS and Inbound Load Balancing
Lame DNS Server Sweeping
APNIC Open Policy Meeting
New Functionality in ARIN Online
Presentation transcript:

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E APNIC Open Address Policy Meeting APNIC Reverse DNS October 26th, Brisbane Bruce Campbell

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Purpose of APNIC Reverse DNS  Delegation of IP space from APNIC to ISPs etc. (in-addr.arpa / ip6.int )  Not automatically set up as part of an IP allocation from APNIC.

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Reverse Delegations  Stored in APNIC WHOIS database as domain objects.  Automatic form checks domain and nameserver configuration for sanity  ‘Sanity’ is at least two nameservers, and information consistent across nameservers and form (ie, SOA same, NS list same, authority set)  Assumes knowledge of Reverse DNS

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E What is a Domain Object?  Domain: in-addr.arpa  Descr: Server and Office Subnet  Country: AU  Admin-c: (APNIC) NIC-HDL  Tech-c: (APNIC) NIC-HDL  Zone-c: (APNIC) NIC-HDL  nserver: ns1.my.forward.domain  nserver: ns.some.faraway.site

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E What is a Domain Object (2) ?  Remarks: free text  notify: Database s this address  mnt-by: MAINT-My-Maintainer-Object  mnt-lower: MAINT-My-Maintainer-Object  changed: YYYYMMDD  source: APNIC  Standard APNIC database object.

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Limitations  Classful delegations (limited to the ‘.’ boundaries). (/19 allocation must delegate 32 /24s)  Not telepathic, must request (re)delegation.  Must have nameservers set up before requesting delegation.  Changes made public (officially) only once per business day (10am, UTC+1000) on ns.apnic.net.

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Via  Standard APNIC database object, can be updated via .  Nameserver/domain set up verified before being submitted to the database.  Protection by maintainer object (current auths of NONE, address, password or PGP).  No zone file rebuilds occur on weekends.

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E On the Web and Interactive 

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Online Errors (also via )

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Request Sent to APNIC

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Successful Update

A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Questions? 