How do you get started with deploying DNSSEC-validating DNS servers on your network? What kind of planning should you undertake? What are the steps you need to go through?
The team over at SURFnet in the Netherlands recently released an excellent whitepaper that goes into the importance of setting up DNSSEC validation, the requirements for using validation, the planning process you should use, etc.
As we note on our resource page about the whitepaper, the document then walks through the specific steps for setting up DNSSEC validation in three of the common DNS resolvers:
For us to get DNSSEC widely available we need to have DNS resolvers on networks performing the actual validation of DNS queries using DNSSEC. This guide is a great way to get started.
Have you enabled DNSSEC validation on your network?
Disclaimer: Viewpoints expressed in this post are those of the author and may or may not reflect official Internet Society positions.
We previously posted about how the DNS does not inherently employ any mechanisms to provide confidentiality for DNS transactions,…
Almost every time we use an Internet application, it starts with a DNS (Domain Name System) transaction to map…
It is often argued that IPv4 practices should be forgotten when deploying IPv6, as after all IPv6 is a…

More Stories
Advancing the Safer Internet Initiative for Everyone
Youth in Action: Contributing to a More Connected and Inclusive Digital Future
Advancing a Connected Future for Indigenous Communities