DNSSEC EARLY WARNING SYSTEM (DEWS) -
Sun Jan 24 14:00:00 UTC 2016
Listed in shortest to longest RRSIG expiry.
BLACK = Unreachable server or broken zone
RED = less than 20% of RRSIG Validity period left or invalid signature or DNSSEC failure..
ORANGE = less than 50% of RRSIG Validity period left or other warning.
YELLOW = less than 70% of RRSIG Validity period left.
GREEN = greater than 70% of RRSIG Validity period left.
CLICK on a dot for detail.
The root trust anchor for the validator exercize is:
. 120 IN DNSKEY 257 3 8 AwEAAd48pv33mNzjgL+dT78CM9DouBVY2hUSOAIpVGpFN0c6jNaQOqO+ YZVBRmePsx2Pbn8SHpSJwJdEWv8GtwFx1pcn3UPP4jjGxKP/uue5uTmx BteLGfad2bK912e4xMJaou6LDeNKmh0CvnssKe8eI3gjvjQvRdRxakUB kAJ1xkTs03+7IEBFMk2XOsAaoTbTmUr3rmVzUtDLFAt/qs14iwPDQ1IN VYDjCOdJQ3Mh52t8qmktjH3njMJD7HQVOmlZdOkqCgzX55pXlhK5xtG3 UUOyQoVJeDPQwG9ZAdwsw9ZQYv9OBGLzgYBtN2EYM5q8TnkukoKwsfgn FjSzydcGXFU=
  
   and thanks to
for courseware
DNS/DNSSEC Hands-On Training 2016 SANOG Kathmandu, Nepal
This is a 2-day, hands-on workshop. The participants will:
Learn to design, deploy, and operate authoritative and recursive DNS architectures
Understand the risks surrounding the DNS, and the role of DNSSEC (DNS security extensions)
Learn how to deploy DNSSEC, including zone signature and key management
Workshop Requirements:
Some understanding of DNS and netowrk basics
Some knowledge of Linux/UNIX command line
Participants need to bring a computer that can acess WiFi and capable of running "ssh". Tablet computers will not work.
DNS/DNSSEC Workshop Agenda
Schedule
Session 1 | 0900-1030 |
Break | 1030-1100 |
Session 2 | 1100-1230 |
Lunch | 1230-1400 |
Session 3 | 1400-1530 |
Break | 1530-1600 |
Session 4 | 1600-1730 |
Instructors
Name | Email | Organization |
Champika Wijayatunga | champika.wijayatunga(at)icann.org | ICANN |
Dr. Richard Lamb | richard.lamb(at)icann.org | ICANN |
Workshop Schedule
Day 1 0830-1730
Day 2 0900-1730
Resources
This ia a collaborative effort between
ICANN
and
NSRC.