DNS 101 Miniseries - #6 - How DNSSEC Works within a Zone

preview_player
Показать описание
DNSSEC strengthens authentication in DNS using digital signatures based on public key cryptography. With DNSSEC, it's not DNS queries and responses themselves that are cryptographically signed, but rather DNS data itself is signed by the owner of the data.

This video steps through how DNSSEC signs and validates resource records (RRSETS) within a DNS Zone using Zone Signing Keys to create RRSIG records.

FOLLOW ME 😺

OTHER VIDEOS AND PLAYLISTS 🎞

All rights reserved © 2022 Adrian Cantrill
Рекомендации по теме
Комментарии
Автор

I've watched two of your videos so far and I am very impressed with the quality. You've gained a subscriber.

papajohnscookie
Автор

Thanks a lot, the demonstration is very clear and helpful

osamahamouda
Автор

Dang, even english is not my native language. Was kind of difficult to me to digest all this information about KSK and ZSK. I landed here because I wanted to understand a little bit more about KSK Ceremony of ICANN/IANA. I will need to review this video a couple of times to understand better.
Anyways, thank you so much to try to illustrate your knowledge on this! <3😊

OctavioNavarroLlamas
Автор

It was a very valuable information with a very easy way to understand though it is a complex topic. Thank you.

moaazabukhalaf
Автор

the best explain video for DNSSEC that I've seen :)

tomose
Автор

I know that this is a very useful information but it seems really complex for me. I'm going to see again this video and try my best to understand it.

yesyas
Автор

I really thank you for the precise information.Thanks a ton. Best video ever on youtube on Dnssec

ashifpatel
Автор

🎯 Key Takeaways for quick navigation:

00:00 🌐 *DNSSEC Introduction*
- DNSSEC focuses on data integrity within a DNS zone.
- Introduces the concept of Resource RecordSet (RRSET) and its importance in DNSSEC.
02:21 🔐 *RRSETs in DNSSEC*
- Resource RecordSets (RRSETs) group records of the same name and type.
- RRSETs are crucial in DNSSEC for validating data integrity within DNS.
05:38 🖊️ *RRSIG and Zone Signing Key*
- RRSIG contains a digital signature of an RRSET using the Zone Signing Key.
- Explains the process of creating RRSIG and its role in ensuring data integrity.
07:58 🗝️ *DNSKEY Records and Public Keys*
- DNSKEY Records store public keys for verifying RRSIGs.
- Differentiates Zone Signing Key (ZSK) and Key Signing Key (KSK).
10:51 🔗 *Chain of Trust in DNSSEC*
- Introduces the Key Signing Key (KSK) and its role in establishing trust.
- Explains the cryptographic linkage between a child zone and its parent zone.
14:37 🔄 *Key Signing Key and Trust*
- Describes how the parent zone trusts the public Key Signing Key of the child zone.
- Highlights the importance of the chain of trust in DNSSEC.
16:28 🛡️ *Enhanced Security with DNSSEC*
- Discusses the security benefits of DNSSEC, including the elimination of DNS cache poisoning.
- Emphasizes the ability to verify the integrity of data within a specific DNS zone.

Made with HARPA AI

hunterwu