DNSSEC EARLY WARNING SYSTEM (DEWS) - Sun Jan 24 14:00:00 UTC 2016

Listed in shortest to longest RRSIG expiry.
BLACK = Unreachable server or broken zone
RED = less than 20% of RRSIG Validity period left or invalid signature or DNSSEC failure..
ORANGE = less than 50% of RRSIG Validity period left or other warning.
YELLOW = less than 70% of RRSIG Validity period left.
GREEN = greater than 70% of RRSIG Validity period left.
CLICK on a dot for detail.
mytld2. . mytld.

The root trust anchor for the validator exercize is:

. 120 IN DNSKEY 257 3 8 AwEAAd48pv33mNzjgL+dT78CM9DouBVY2hUSOAIpVGpFN0c6jNaQOqO+ YZVBRmePsx2Pbn8SHpSJwJdEWv8GtwFx1pcn3UPP4jjGxKP/uue5uTmx BteLGfad2bK912e4xMJaou6LDeNKmh0CvnssKe8eI3gjvjQvRdRxakUB kAJ1xkTs03+7IEBFMk2XOsAaoTbTmUr3rmVzUtDLFAt/qs14iwPDQ1IN VYDjCOdJQ3Mh52t8qmktjH3njMJD7HQVOmlZdOkqCgzX55pXlhK5xtG3 UUOyQoVJeDPQwG9ZAdwsw9ZQYv9OBGLzgYBtN2EYM5q8TnkukoKwsfgn FjSzydcGXFU=

      and thanks to for courseware

DNS/DNSSEC Hands-On Training 2016 SANOG Kathmandu, Nepal

This is a 2-day, hands-on workshop. The participants will:
Learn to design, deploy, and operate authoritative and recursive DNS architectures
Understand the risks surrounding the DNS, and the role of DNSSEC (DNS security extensions)
Learn how to deploy DNSSEC, including zone signature and key management

Workshop Requirements:

Some understanding of DNS and netowrk basics
Some knowledge of Linux/UNIX command line
Participants need to bring a computer that can acess WiFi and capable of running "ssh". Tablet computers will not work.

DNS/DNSSEC Workshop Agenda

Schedule

Session 10900-1030
Break 1030-1100
Session 2 1100-1230
Lunch 1230-1400
Session 3 1400-1530
Break 1530-1600
Session 4 1600-1730

Instructors

NameEmailOrganization
Champika Wijayatungachampika.wijayatunga(at)icann.orgICANN
Dr. Richard Lambrichard.lamb(at)icann.orgICANN

Workshop Schedule

Day 1 0830-1730 Day 2 0900-1730

Resources



This ia a collaborative effort between ICANN and NSRC.