SlideShare a Scribd company logo
1 of 4
Download to read offline
Infoblox DNS Management

Advanced Tools to Simplify DNS                                                                                      December 2007


OVERVIEW
     •    Infoblox appliances with the DNSone® package provide advanced DNS management features with an intuitive GUI
          on a high-availability platform with real-time disaster recovery capabilities. This allows IT departments to truly provide
          DNS services in a utility model.
     •    Infoblox appliances for DNS adhere to all industry standards, which allows for a smooth migration to an all-appliance
          solution. Alternatively, the Infoblox appliance can be used as a tool for managing DNS services on existing servers.
          While this solution does not take advantage of the resiliency and security of the Infoblox appliance, it ensures current
          investments in hardware are not wasted.


Infoblox Platform Advantages - General
          Secure appliance platform
              – Easier to deploy on hostile networks (e.g., DMZs), more secure physically
          Low cost of ownership
              – Ability to build distributed infrastructure without incurring high administrative cost
          Built-in resiliency/disaster recovery (DR) features
              – Easy recovery of services after a catastrophe, elimination of ad hoc DR solutions
          Support for VRRP-based high availability
              – Ability to use redundant HA pairs for critical servers
          Easier and less frequent patching
              – Less administrative effort, less disruption of service
          Unified GUI for management of DNS and DHCP
              – Exploits commonalities in configuration of the two protocols, ensures consistency between their
                   configuration
          Platform-independent (Java-based) GUI
              – Runs under any web browser, not just on Windows
          Global search
              – Simplifies finding data in arbitrary zones or lease pools
          Recycle bin
              – Allows easy recovery of accidentally deleted data
          Hierarchical configuration
              – Simplifies configuration of parameters common to most DNS servers or DHCP servers in an
                   organization
          IPAM functionality
              – Ability to easily manage an organization’s entire address space
          Fine-grained authorization
              – Ability to safely delegate management of zones and networks to help desk, operational personnel
          Audit logging
              – Visibility into what administrators have done, as well as when those actions took place
              – Compliance with regulations (e.g., Sarbanes-Oxley)
              – Extensive logging
          Built-in troubleshooting tools
              – Easier troubleshooting of problems with a standard set of tools




© 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.
Infoblox DNS Management

Advanced Tools to Simplify DNS                                                                                 December 2007


          SNMP (MIB and trap) support
             – Integration into existing SNMP-based monitoring systems
          Support organization with deep expertise in DNS and DHCP
               –    Highly skilled support staff accessible without multiple levels of escalation


Advantages of the Infoblox DNS Solution
          Secure Dynamic Update support without a Domain Controller
              – Ability to separate DC and name server, thereby compartmentalizing risk and disentangling
                 maintenance schedules
          Support for member-based management and member-independent management
              – Easier delegation of low-level data management to operations/help desk
          Support for query, recursive query, and zone transfer ACLs
              – Required on many Internet-accessible name servers (e.g., forwarders, external authoritative
                 name servers)
          Support for TSIG
              – Better security for zone transfers to and from remote name servers
          Support for GSS-TSIG
              – Secure DDNS updates from Windows computers
          Support for NS Groups
              – Much easier handling of en masse changes of authoritative name servers
          Support for views
              – Ability to securely combine name server functions and to serve multiple versions of a single zone,
                 even across multiple name servers (unique to industry)
          Support for Anycast
              – Ability to build very resilient name server infrastructure
          Support for Zone Locking
              – Allows operators to “own” the zone while making changes to avoid double edit issues
          Support for disabling zones
              – Allows zone to be created but not activated, or to be deactivated without deletion
          Support for Shared Records
              – Elimination of redundant administration when records appear in multiple zones
          Support for incremental updates
              – Changes made in the GUI only result in IXFR to external (i.e., non-Infoblox) name servers
          Support for sortlist
              – Configurable address responses to direct clients to the closest instance of a network resource
          IPv6 support
          Extensively configurable logging
              – Ability to filter out nuisance messages, select critical messages
          Support for syslog, including remote syslogging
              – Standard mechanism for logging across a network, works with third-party log analysis tools




© 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.
Infoblox DNS Management

Advanced Tools to Simplify DNS                                                                                 December 2007


          Configurable host naming restrictions
              – Allows administrators to configure and enforce organization-specific host naming rules
          Selection of authoritative name servers and forwarders based on roundtrip time
              – Better name server performance and greater resilience in the face of network and component
                  failures
          Credibility mechanism for protection against cache poisoning
              – Better resistance to pharming attacks
          Policy and error checking at time of input
              – The GUI prevents data entry errors and allows for hostname templates by zone
          Data Import Wizard (DIW)
              – DIW allows migration of existing data, including cleansing of data and error checking before
                  import


Advantages of the Infoblox DHCP Solution
          Support for DHCP Failover
             – More resilient DHCP service without split scopes
          Lease history
               –  Ability to track history of address assignment for regulatory compliance, forensics,
                  troubleshooting
          Easier configuration of custom DHCP options
             – Easier support for VoIP phones and other non-Windows DHCP clients
          Support for filtering (based on MAC address, relay agent, option)
               –Ability to restrict leases to only known clients, clients using a particular DHCP relay, or according
                to other criteria
          Templates for easy duplication of common network configurations
               –Streamlines creation of new DHCP ranges, minimizes errors, and helps ensure consistency
          Support for joining/splitting networks
               –  Easier reconfiguration when network changes
          Easier and more complete access to DHCP statistics
               –Better visibility of state of network, easier detection of DHCP range exhaustion
          Support for member-based management and member-independent management
               –    True global management, without being forced to remember which DHCP server serves a
                    particular range
               –Searching of leases across all managed DHCP servers
          Support for converting dynamic leases to static and back
               –Streamlines common administrative tasks
          Name collision detection
               –    Eliminates the inadvertent deletion of important resource records




© 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.
Infoblox DNS Management

Advanced Tools to Simplify DNS                                                                                      December 2007


          More flexible handling of dynamic updates
               – More options when choosing how DHCP clients are registered, allowing DHCP clients to move
                 from wired to wireless networks while preserving their domain names, for example
          Detection of overlapping ranges
               –    Elimination of potentially disruptive configuration mistakes




                                                                                                        Your Infoblox Reseller
                                                                                                        www.altaware.com
                                                                                                       sales@altaware.com
                                                                                                         (866) 833-4070




© 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.

More Related Content

Viewers also liked

Network automation seminar
Network automation seminarNetwork automation seminar
Network automation seminarpatmisasi
 
How to Sell Security to Your CIO
How to Sell Security to Your CIOHow to Sell Security to Your CIO
How to Sell Security to Your CIORapid7
 
Threat Exposure Management - Reduce your Risk of a Breach
Threat Exposure Management - Reduce your Risk of a BreachThreat Exposure Management - Reduce your Risk of a Breach
Threat Exposure Management - Reduce your Risk of a BreachRahul Neel Mani
 
DNS, DHCP & IPAM with IPv6
DNS, DHCP & IPAM with IPv6DNS, DHCP & IPAM with IPv6
DNS, DHCP & IPAM with IPv6Andreas Taudte
 
The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7
The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7
The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7Rapid7
 
Uberflip and Infer –  Predictive analytics: A Content Marketers Secret Weapon
Uberflip and Infer –  Predictive analytics: A Content Marketers Secret WeaponUberflip and Infer –  Predictive analytics: A Content Marketers Secret Weapon
Uberflip and Infer –  Predictive analytics: A Content Marketers Secret WeaponInfer
 
Dns security threats and solutions
Dns security   threats and solutionsDns security   threats and solutions
Dns security threats and solutionsFrank Victory
 
MassTLC summit_amacleod_predictiveanalytics
MassTLC summit_amacleod_predictiveanalyticsMassTLC summit_amacleod_predictiveanalytics
MassTLC summit_amacleod_predictiveanalyticsMassTLC
 

Viewers also liked (15)

Bmit meet theexperts_2013
Bmit meet theexperts_2013Bmit meet theexperts_2013
Bmit meet theexperts_2013
 
Workgroup Issues
Workgroup IssuesWorkgroup Issues
Workgroup Issues
 
Network automation seminar
Network automation seminarNetwork automation seminar
Network automation seminar
 
Long Infoblox
Long InfobloxLong Infoblox
Long Infoblox
 
Ipadd mngt
Ipadd mngtIpadd mngt
Ipadd mngt
 
How to Sell Security to Your CIO
How to Sell Security to Your CIOHow to Sell Security to Your CIO
How to Sell Security to Your CIO
 
Threat Exposure Management - Reduce your Risk of a Breach
Threat Exposure Management - Reduce your Risk of a BreachThreat Exposure Management - Reduce your Risk of a Breach
Threat Exposure Management - Reduce your Risk of a Breach
 
Cyber crime v3
Cyber crime v3Cyber crime v3
Cyber crime v3
 
DNS, DHCP & IPAM with IPv6
DNS, DHCP & IPAM with IPv6DNS, DHCP & IPAM with IPv6
DNS, DHCP & IPAM with IPv6
 
The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7
The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7
The Internet of Fails - Mark Stanislav, Senior Security Consultant, Rapid7
 
Uberflip and Infer –  Predictive analytics: A Content Marketers Secret Weapon
Uberflip and Infer –  Predictive analytics: A Content Marketers Secret WeaponUberflip and Infer –  Predictive analytics: A Content Marketers Secret Weapon
Uberflip and Infer –  Predictive analytics: A Content Marketers Secret Weapon
 
Dns security threats and solutions
Dns security   threats and solutionsDns security   threats and solutions
Dns security threats and solutions
 
Radio Mobile
Radio MobileRadio Mobile
Radio Mobile
 
Advanced DNS Protection
Advanced DNS ProtectionAdvanced DNS Protection
Advanced DNS Protection
 
MassTLC summit_amacleod_predictiveanalytics
MassTLC summit_amacleod_predictiveanalyticsMassTLC summit_amacleod_predictiveanalytics
MassTLC summit_amacleod_predictiveanalytics
 

More from Altaware, Inc.

Netgear ReadyNAS Comparison
Netgear ReadyNAS ComparisonNetgear ReadyNAS Comparison
Netgear ReadyNAS ComparisonAltaware, Inc.
 
Aerohive datasheet br200
Aerohive datasheet br200Aerohive datasheet br200
Aerohive datasheet br200Altaware, Inc.
 
Juniper Enterprise Guest Access
Juniper Enterprise Guest AccessJuniper Enterprise Guest Access
Juniper Enterprise Guest AccessAltaware, Inc.
 
Juniper Networks SRX Branch Solutions
Juniper Networks SRX Branch SolutionsJuniper Networks SRX Branch Solutions
Juniper Networks SRX Branch SolutionsAltaware, Inc.
 
Juniper Networks Product Comparisons
Juniper Networks Product ComparisonsJuniper Networks Product Comparisons
Juniper Networks Product ComparisonsAltaware, Inc.
 
Aerohive Branch on Demand Solution Brief
Aerohive Branch on Demand Solution BriefAerohive Branch on Demand Solution Brief
Aerohive Branch on Demand Solution BriefAltaware, Inc.
 
Aerohive whitepaper-cooperative control WLAN
Aerohive whitepaper-cooperative control WLANAerohive whitepaper-cooperative control WLAN
Aerohive whitepaper-cooperative control WLANAltaware, Inc.
 
White paper - Building Secure Wireless Networks
White paper - Building Secure Wireless NetworksWhite paper - Building Secure Wireless Networks
White paper - Building Secure Wireless NetworksAltaware, Inc.
 
ScreenOS 6.1 Concepts & Examples
ScreenOS 6.1 Concepts & ExamplesScreenOS 6.1 Concepts & Examples
ScreenOS 6.1 Concepts & ExamplesAltaware, Inc.
 
PANOS 4.1 Administrators Guide
PANOS 4.1 Administrators GuidePANOS 4.1 Administrators Guide
PANOS 4.1 Administrators GuideAltaware, Inc.
 
Aerohive 802.11 Technology Primer
Aerohive 802.11 Technology PrimerAerohive 802.11 Technology Primer
Aerohive 802.11 Technology PrimerAltaware, Inc.
 
Aerohive - TeacherView and Student Manager
Aerohive - TeacherView and Student ManagerAerohive - TeacherView and Student Manager
Aerohive - TeacherView and Student ManagerAltaware, Inc.
 

More from Altaware, Inc. (20)

Netgear ReadyNAS Comparison
Netgear ReadyNAS ComparisonNetgear ReadyNAS Comparison
Netgear ReadyNAS Comparison
 
Aerohive datasheet br200
Aerohive datasheet br200Aerohive datasheet br200
Aerohive datasheet br200
 
Juniper Enterprise Guest Access
Juniper Enterprise Guest AccessJuniper Enterprise Guest Access
Juniper Enterprise Guest Access
 
Juniper MAG Series
Juniper MAG SeriesJuniper MAG Series
Juniper MAG Series
 
Juniper Networks SRX Branch Solutions
Juniper Networks SRX Branch SolutionsJuniper Networks SRX Branch Solutions
Juniper Networks SRX Branch Solutions
 
Juniper Networks Product Comparisons
Juniper Networks Product ComparisonsJuniper Networks Product Comparisons
Juniper Networks Product Comparisons
 
Infoblox appliances
Infoblox appliancesInfoblox appliances
Infoblox appliances
 
Aerohive Branch on Demand Solution Brief
Aerohive Branch on Demand Solution BriefAerohive Branch on Demand Solution Brief
Aerohive Branch on Demand Solution Brief
 
Aerohive whitepaper-cooperative control WLAN
Aerohive whitepaper-cooperative control WLANAerohive whitepaper-cooperative control WLAN
Aerohive whitepaper-cooperative control WLAN
 
White paper - Building Secure Wireless Networks
White paper - Building Secure Wireless NetworksWhite paper - Building Secure Wireless Networks
White paper - Building Secure Wireless Networks
 
ScreenOS 6.1 Concepts & Examples
ScreenOS 6.1 Concepts & ExamplesScreenOS 6.1 Concepts & Examples
ScreenOS 6.1 Concepts & Examples
 
PANOS 4.1 Administrators Guide
PANOS 4.1 Administrators GuidePANOS 4.1 Administrators Guide
PANOS 4.1 Administrators Guide
 
SIP2 for ILS
SIP2 for ILSSIP2 for ILS
SIP2 for ILS
 
Aerohive AP 350
Aerohive AP 350Aerohive AP 350
Aerohive AP 350
 
Aerohive AP 330
Aerohive AP 330Aerohive AP 330
Aerohive AP 330
 
Aerohive AP 170
Aerohive AP 170Aerohive AP 170
Aerohive AP 170
 
Aerohive AP 120
Aerohive AP 120Aerohive AP 120
Aerohive AP 120
 
Aerohive 802.11 Technology Primer
Aerohive 802.11 Technology PrimerAerohive 802.11 Technology Primer
Aerohive 802.11 Technology Primer
 
Aerohive - TeacherView and Student Manager
Aerohive - TeacherView and Student ManagerAerohive - TeacherView and Student Manager
Aerohive - TeacherView and Student Manager
 
PAN PA2000 series
PAN PA2000 seriesPAN PA2000 series
PAN PA2000 series
 

Recently uploaded

Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfNeo4j
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesThousandEyes
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...AliaaTarek5
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024Lonnie McRorey
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterMydbops
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Hiroshi SHIBATA
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...Wes McKinney
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersNicole Novielli
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity PlanDatabarracks
 
What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfMounikaPolabathina
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsPixlogix Infotech
 
Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...
Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...
Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...panagenda
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPathCommunity
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityIES VE
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI AgeCprime
 
Potential of AI (Generative AI) in Business: Learnings and Insights
Potential of AI (Generative AI) in Business: Learnings and InsightsPotential of AI (Generative AI) in Business: Learnings and Insights
Potential of AI (Generative AI) in Business: Learnings and InsightsRavi Sanghani
 

Recently uploaded (20)

Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdf
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL Router
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software Developers
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity Plan
 
What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdf
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and Cons
 
Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...
Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...
Why device, WIFI, and ISP insights are crucial to supporting remote Microsoft...
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to Hero
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a reality
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI Age
 
Potential of AI (Generative AI) in Business: Learnings and Insights
Potential of AI (Generative AI) in Business: Learnings and InsightsPotential of AI (Generative AI) in Business: Learnings and Insights
Potential of AI (Generative AI) in Business: Learnings and Insights
 

Infoblox DNS and DHCP Overview

  • 1. Infoblox DNS Management Advanced Tools to Simplify DNS December 2007 OVERVIEW • Infoblox appliances with the DNSone® package provide advanced DNS management features with an intuitive GUI on a high-availability platform with real-time disaster recovery capabilities. This allows IT departments to truly provide DNS services in a utility model. • Infoblox appliances for DNS adhere to all industry standards, which allows for a smooth migration to an all-appliance solution. Alternatively, the Infoblox appliance can be used as a tool for managing DNS services on existing servers. While this solution does not take advantage of the resiliency and security of the Infoblox appliance, it ensures current investments in hardware are not wasted. Infoblox Platform Advantages - General Secure appliance platform – Easier to deploy on hostile networks (e.g., DMZs), more secure physically Low cost of ownership – Ability to build distributed infrastructure without incurring high administrative cost Built-in resiliency/disaster recovery (DR) features – Easy recovery of services after a catastrophe, elimination of ad hoc DR solutions Support for VRRP-based high availability – Ability to use redundant HA pairs for critical servers Easier and less frequent patching – Less administrative effort, less disruption of service Unified GUI for management of DNS and DHCP – Exploits commonalities in configuration of the two protocols, ensures consistency between their configuration Platform-independent (Java-based) GUI – Runs under any web browser, not just on Windows Global search – Simplifies finding data in arbitrary zones or lease pools Recycle bin – Allows easy recovery of accidentally deleted data Hierarchical configuration – Simplifies configuration of parameters common to most DNS servers or DHCP servers in an organization IPAM functionality – Ability to easily manage an organization’s entire address space Fine-grained authorization – Ability to safely delegate management of zones and networks to help desk, operational personnel Audit logging – Visibility into what administrators have done, as well as when those actions took place – Compliance with regulations (e.g., Sarbanes-Oxley) – Extensive logging Built-in troubleshooting tools – Easier troubleshooting of problems with a standard set of tools © 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.
  • 2. Infoblox DNS Management Advanced Tools to Simplify DNS December 2007 SNMP (MIB and trap) support – Integration into existing SNMP-based monitoring systems Support organization with deep expertise in DNS and DHCP – Highly skilled support staff accessible without multiple levels of escalation Advantages of the Infoblox DNS Solution Secure Dynamic Update support without a Domain Controller – Ability to separate DC and name server, thereby compartmentalizing risk and disentangling maintenance schedules Support for member-based management and member-independent management – Easier delegation of low-level data management to operations/help desk Support for query, recursive query, and zone transfer ACLs – Required on many Internet-accessible name servers (e.g., forwarders, external authoritative name servers) Support for TSIG – Better security for zone transfers to and from remote name servers Support for GSS-TSIG – Secure DDNS updates from Windows computers Support for NS Groups – Much easier handling of en masse changes of authoritative name servers Support for views – Ability to securely combine name server functions and to serve multiple versions of a single zone, even across multiple name servers (unique to industry) Support for Anycast – Ability to build very resilient name server infrastructure Support for Zone Locking – Allows operators to “own” the zone while making changes to avoid double edit issues Support for disabling zones – Allows zone to be created but not activated, or to be deactivated without deletion Support for Shared Records – Elimination of redundant administration when records appear in multiple zones Support for incremental updates – Changes made in the GUI only result in IXFR to external (i.e., non-Infoblox) name servers Support for sortlist – Configurable address responses to direct clients to the closest instance of a network resource IPv6 support Extensively configurable logging – Ability to filter out nuisance messages, select critical messages Support for syslog, including remote syslogging – Standard mechanism for logging across a network, works with third-party log analysis tools © 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.
  • 3. Infoblox DNS Management Advanced Tools to Simplify DNS December 2007 Configurable host naming restrictions – Allows administrators to configure and enforce organization-specific host naming rules Selection of authoritative name servers and forwarders based on roundtrip time – Better name server performance and greater resilience in the face of network and component failures Credibility mechanism for protection against cache poisoning – Better resistance to pharming attacks Policy and error checking at time of input – The GUI prevents data entry errors and allows for hostname templates by zone Data Import Wizard (DIW) – DIW allows migration of existing data, including cleansing of data and error checking before import Advantages of the Infoblox DHCP Solution Support for DHCP Failover – More resilient DHCP service without split scopes Lease history – Ability to track history of address assignment for regulatory compliance, forensics, troubleshooting Easier configuration of custom DHCP options – Easier support for VoIP phones and other non-Windows DHCP clients Support for filtering (based on MAC address, relay agent, option) –Ability to restrict leases to only known clients, clients using a particular DHCP relay, or according to other criteria Templates for easy duplication of common network configurations –Streamlines creation of new DHCP ranges, minimizes errors, and helps ensure consistency Support for joining/splitting networks – Easier reconfiguration when network changes Easier and more complete access to DHCP statistics –Better visibility of state of network, easier detection of DHCP range exhaustion Support for member-based management and member-independent management – True global management, without being forced to remember which DHCP server serves a particular range –Searching of leases across all managed DHCP servers Support for converting dynamic leases to static and back –Streamlines common administrative tasks Name collision detection – Eliminates the inadvertent deletion of important resource records © 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.
  • 4. Infoblox DNS Management Advanced Tools to Simplify DNS December 2007 More flexible handling of dynamic updates – More options when choosing how DHCP clients are registered, allowing DHCP clients to move from wired to wireless networks while preserving their domain names, for example Detection of overlapping ranges – Elimination of potentially disruptive configuration mistakes Your Infoblox Reseller www.altaware.com sales@altaware.com (866) 833-4070 © 2007 Infoblox Inc. All rights reserved. All registered trademarks are property of their respective owners.