13
AM TLD Governance AM TLD Governance The role of ITC/AMNIC The role of ITC/AMNIC

AM TLD Governance The role of ITC/AMNIC

Embed Size (px)

DESCRIPTION

AM TLD Governance The role of ITC/AMNIC. AMNIC public services. DNS. Whois. WWW. Database - behind of scene. Other services – e-mail, NTP, cDNS, RIPE Atlas. DNS. Zone file management. DNSSEC. Slaves – diversity, reliability, security. IANA. DNSSEC pros. - PowerPoint PPT Presentation

Citation preview

Page 1: AM TLD Governance The role of ITC/AMNIC

AM TLD GovernanceAM TLD Governance

The role of ITC/AMNICThe role of ITC/AMNIC

Page 2: AM TLD Governance The role of ITC/AMNIC

AMNIC public servicesAMNIC public services DNS

Whois

WWW

Other services – e-mail, NTP, cDNS, RIPE Atlas

Database - behind of scene

Page 3: AM TLD Governance The role of ITC/AMNIC

DNS Zone file management

Slaves – diversity, reliability, security

DNSSEC

IANA

Page 4: AM TLD Governance The role of ITC/AMNIC

DNSSEC pros

Authentication of origin

Record's non-existence verification

DANE/TLSA !

No MITM and cache poisoning anymore

Page 5: AM TLD Governance The role of ITC/AMNIC

DNSSEC cons

Additional maintenance tasks

Target for DDoS - larger responses, more CPU load and RAM

usage

Increased cost of errors

Page 6: AM TLD Governance The role of ITC/AMNIC

Back to other services

Whois - standard and web interfaces

Web interfaces to database updates

NTP stratum 1 server - ntp.amnic.net

member of pool.ntp.org cDNS - an instance of anycast cloud

E-mail - other way to communicate

Page 7: AM TLD Governance The role of ITC/AMNIC

Hardware, connectivity, etcHardware, connectivity, etc

Two datacentres

Two power sources

Two upstream NSPs

Page 8: AM TLD Governance The role of ITC/AMNIC

Datacentres

Server per service - virtualization

Database streaming replication

Total logging

Backup to opposite DC

Internal anycasting

Page 9: AM TLD Governance The role of ITC/AMNIC

Upstreams

Connected to local exchanges

Native IPv6

Multihomed, with large capacity

Page 10: AM TLD Governance The role of ITC/AMNIC

Power

Good UPS systems

Reliable switching between sources

Page 11: AM TLD Governance The role of ITC/AMNIC

Disaster recovery

Recovery from backup

Migration to alive database

Migration to alive datacentre

Page 12: AM TLD Governance The role of ITC/AMNIC

What to improve

Power generator system in main DC

Paid escrow service out of country

Global anycasting of DNS

Page 13: AM TLD Governance The role of ITC/AMNIC

Questions? Suggestions ?

Hrant Dadivanyan at [email protected]