Registry Update. John Dickinson. Nominet UK



Similar documents
Pre Delegation Testing (PDT) Frequently Asked Questions (FAQ)

DNS & IPv6. Agenda 4/14/2009. MENOG4, 8-9 April Raed Al-Fayez SaudiNIC CITC rfayez@citc.gov.sa, DNS & IPv6.

Techniques for implementing & running robust and reliable DB-centric Grid Applications

State of the Cloud DNS Report

Cisco Active Network Abstraction Gateway High Availability Solution

BEST PRACTICES FOR IMPROVING EXTERNAL DNS RESILIENCY AND PERFORMANCE

Tushar Joshi Turtle Networks Ltd

Lab 5 Explicit Proxy Performance, Load Balancing & Redundancy

Copyright International Business Machines Corporation All rights reserved. US Government Users Restricted Rights Use, duplication or disclosure

70-412: Configuring Advanced Windows Server 2012 Services

Best Practices in Domain Name Registry Solutions Understanding the Technical Requirements of ICANN's Applicant Guidebook

Networking Domain Name System

State of the Cloud DNS Report

High Availability and Clustering

Blackboard Managed Hosting SM Disaster Recovery Planning Document

Introduction to the Domain Name System

Training Name Installing and Configuring Windows Server 2012

.Masr IDN registry system. National Telecom Regulatory Authority Of EGYPT ( NTRA ) ( 20 Min )

High Availability Databases based on Oracle 10g RAC on Linux

APNIC IPv6 Deployment

THE MASTER LIST OF DNS TERMINOLOGY. v 2.0

Informix Dynamic Server May Availability Solutions with Informix Dynamic Server 11

Creating the Conceptual Design by Gathering and Analyzing Business and Technical Requirements

Backup and Restore of CONFIGURATION Object on Windows 2008

High Availability Infrastructure for Cloud Computing

Monitoring the DNS. Gustavo Lozano Event Name XX XXXX 2015

DNS Root NameServers

A SURVEY OF POPULAR CLUSTERING TECHNOLOGIES

המרכז ללימודי חוץ המכללה האקדמית ספיר. ד.נ חוף אשקלון טל' פקס בשיתוף עם מכללת הנגב ע"ש ספיר

Veritas Cluster Server

Configuring a Domain to work with your Server

TOP FIVE REASONS WHY CUSTOMERS USE EMC AND VMWARE TO VIRTUALIZE ORACLE ENVIRONMENTS

Centrata IT Management Suite 3.0

Red Hat Cluster Suite

What s in Installing and Configuring Windows Server 2012 (70-410):

THE MASTER LIST OF DNS TERMINOLOGY. First Edition

Implementing High-Availability (HA) Solutions for Siebel ebusiness Applications

Veritas Storage Foundation and High Availability Solutions HA and Disaster Recovery Solutions Guide for Enterprise Vault

How to set up the Integrated DNS Server for Inbound Load Balancing

MCSE: server infrastructure Syllabus

Website Disaster Recovery

PolyServe Understudy QuickStart Guide

R3: Windows Server 2008 Administration. Course Overview. Course Outline. Course Length: 4 Day

DNS and issues in connecting UNINET-ZA to the Internet

High Availability & Disaster Recovery Development Project. Concepts, Design and Implementation

SINGLE COURSE. 136 Total Hours. After completing this course, students will be able to:

Superior Disaster Recovery with Radware s Global Server Load Balancing (GSLB) Solution

Disaster Recovery Disaster Recovery Planning for Business Continuity Session Name :

Data Replication INSTALATION GUIDE. Open-E Data Storage Server (DSS ) Integrated Data Replication reduces business downtime.

Deploying Remote Desktop Connection Broker with High Availability Step-by-Step Guide

High Availability and Disaster Recovery for Exchange Servers Through a Mailbox Replication Approach

Disaster Recovery Solution Achieved by EXPRESSCLUSTER

Managing and Maintaining Windows Server 2008 Servers

Strategies to Solve and Optimize Management of Multi-tiered Business Services

DNS Architecture Case Study: Resiliency and Disaster Recovery

Networking Domain Name System

Why is Redundancy Important?

5054A: Designing a High Availability Messaging Solution Using Microsoft Exchange Server 2007

High Availability Database Solutions. for PostgreSQL & Postgres Plus

High Availability Solutions for MySQL. Lenz Grimmer DrupalCon 2008, Szeged, Hungary

MCSA Objectives. Exam : TS:Exchange Server 2007, Configuring

Glossary of Technical Terms Related to IPv6

IPv6 support in the DNS

Avoid a single point of failure by replicating the server Increase scalability by sharing the load among replicas

How to Transfer Domain Names and Get an Authorization Code

Description: Topics covered in this course include:

XLink ClusterReplica SQL 3.0 For Windows 2000/2003/XP

CA ARCserve and CA XOsoft r12.5 Best Practices for protecting Microsoft SQL Server

Availability Digest. Redundant Load Balancing for High Availability July 2013

DNSSEC in your workflow

MCSA Instructor-led Live Online Training Program. Course Outline MCSA Deploying and Managing Windows Server 2012

LinkProof DNS Quick Start Guide

Affordable Enabling Technology 2. Giles Gamon of High-Availability.Com. Practical Approaches

USING TRANSACTION SIGNATURES (TSIG) FOR SECURE DNS SERVER COMMUNICATION

DeltaV Virtualization High Availability and Disaster Recovery

shortcut Tap into learning NOW! Visit for a complete list of Short Cuts. Your Short Cut to Knowledge

Overview of I/O Performance and RAID in an RDBMS Environment. By: Edward Whalen Performance Tuning Corporation

MCSE Objectives. Exam : TS:Exchange Server 2007, Configuring

MCSE Core exams (Networking) One Client OS Exam. Core Exams (6 Exams Required)

Contingency Planning and Disaster Recovery

Veritas Cluster Server from Symantec

Configuring DNS. Finding Feature Information

McAfee Endpoint Encryption Hot Backup Implementation

Brian LaGoe, Systems Administrator Benjamin Jellema, Systems Administrator Eastern Michigan University

High Availability Design Patterns

Transcription:

Registry Update John Dickinson Nominet UK

Registry Update What Nominet does Recent technical changes and future plans

What Nominet does UK Domain Name Registry Delegated to provide name resolution for.uk Three stakeholder groups: Members and Tag holders Registrants Internet Community.

Domain Name Service (DNS) Provide DNS for.uk Allow registrations under several SLDs: co.uk, org.uk, me.uk, net.uk ltd.uk, plc.uk, sch.uk Delegate other SLDs: ac.uk, mod.uk, gov.uk, etc.

Monthly Registration Statistics for.uk Domain Names (2005).co.uk.me.uk.org.uk.ltd.uk.plc.uk.net.uk.sch.uk Total April 103776 2110 6713 236 3 2 29 112869 March 107900 2423 7216 259 3 2 17 117820 February 106382 2018 6821 326 3 1 21 115572 January 97547 2023 6651 322 2 0 22 106567 Total registrations+ in the.uk database as of 30th April 2005: 4,108,068

Domains nominet.org.uk Our internal network nic.uk UK nameservers 7 NSs running BIND 9 and service from UltraDNS for two anycasted servers (UltraDaemon). Located in London, Manchester, Amsterdam and Reading (coming soon). Whois, DAC Automaton

Recent Changes Dynamic Updates Clustered Automaton and Real Application Cluster (RAC) for Automaton Database Became our own ISP.

Dynamic Updates: Background Complete zone builds took a very long time to do and propagate. (3.5m DNs, 9m RRs, 250MB biggest zone file, 2.5 hr build/propagation). BIND goes silent while reload zone after AXFR Wanted to reduce the support load by people who make a mistake and cannot wait until next full build to have it corrected. Can receive up to 300,000 updates per day.

Dynamic Updates: Testing Used four months of data, which was 1.1 million changes. Takes about 4 hours to process. Built a subset of a our live network, with just three NSs, using identical hardware and software. Basic methodology was to apply changes to known zone file and compare product to second known zone file. Finally tested failure modes: pulled out cables, switched off machines, etc.

Dynamic Updates: Conclusion Very successful. Technology was actually quite simple. Surprised by how fast it propagates.

Clustered Automaton and Database: Background Automaton and database were SPOF. We had spare systems but there would have been significant downtime. Load very high on automaton server. There was lots of IO wait. Receives about 60,000 PGP signed requests for domains every day Sends a PGP signed email reply for every request

Clustered Automaton and Database: Technology Technologies Veritas cluster server and filesystem Shared EMC Clarion disk array Oracle 10g with RAC Sun V480 Servers Benefits Automatic failover Increased performance Lower IO wait

Clustered Automaton and Database

Clustered Automaton and Database: Conclusion Very successful Very stable. Complex to setup. There were lots of new technologies to learn. Multi-vendor solution can make debugging complex. However is considered best of breed.

Nominet as its own ISP Not an ISP No customers One prefix: 213.248.192/18 Why become our own ISP? Policy reasons Technical reasons

Why become our own ISP? Policy Autonomy Avoid conflict with Members Member experience Technical Redundant connections 2 transit providers 100+ peers Globally routable IP block Network infrastructure.

Peering Connections

Peering with Nominet What s in AS8683: Automaton Website Mailing list server What s not: No.uk nameservers No Whois Contact peering@nominet.org.uk to peer with Nominet.

Future Plans Different nameserver software DAC Oracle Replication Network Monitoring Early adopter of new technologies Developing Internet Standards.

Nameserver Software Currently using BIND We want a heterogeneous network Investigating alternatives e.g. ANS, NSD Requirements Load large zones Dynamic updates, IXFR and notifies DNSSEC Performance Reliability

Domain Availability Checker The old whois is under heavy load DAC will be used for high volume queries. Returns less data and connections are persistent Currently in beta Will be available to tag holders who are also members Having some problems with Oracle replication and the DAC process Working hard to resolve them

Oracle Replication Currently, Whois data is 5 mins behind real time Need to improve reliability and performance. Whois and DAC will have an Oracle backend Use Oracle DataGuard to replicate the Oracle cluster (Logical standby) Also planned for backups and disaster recovery (Physical standby). When working correctly data is replicated in a few seconds. We have been having problems due to various Oracle bugs causing the application of replicated data to freeze. We are working with Oracle to get this fixed.

Network Monitoring We have a internally developed network monitoring system. It is very stable and works well but is not very flexible or good at reporting. Currently investigating alternatives (e.g. nagios) Interested in tying it into better log file analysis and security systems (IDS etc) Interested to hear suggestions/ideas from others

New technologies and Standards Securing DNS (DNSSEC) Internationalised Domain Names (IDN) Extensible Provisioning Protocol (EPP) IPv6.

Summary What Nominet does Recent changes, future plans Peering with Nominet.

Questions? Email: jad@nominet.org.uk Blog: http://blog.nominet.org.uk