The Domain Name System (DNS) is a critical part of the Internet, and as such, is a common target for abuse. One of the ways to protect DNS is using DNSSEC, a security mechanism designed to guarantee the authenticity and integrity of DNS data using crypto.
This tutorial will discuss how DNSSEC works, introduce new DNS security extensions and protocol modifications, and explain the details of DNSSEC validation and zone signing. It will also introduce key generation, management and rollover.
Participants will be able to implement these concepts in the DNSSEC Lab exercise.
This online tutorial is fee-free.
Systems engineers / administrators who will be managing DNS infrastructure.
- Some basic knowledge of Linux command line
- Understanding of DNS operations
- DNSSEC Technical Overview
- DNSSEC Validation
- DNSSEC Zone Signing
- Manual Zone Signing
- Automatic Signing
- DNSSEC Key Management & Rollover
Participants are advised to bring their own laptop computer for the hands-on lab exercises.