SlideShare a Scribd company logo
DNS Measurement
Activity on ITB 2010
    Affan Basalamah
Outline
• Overview
• DITL 2010 by OARC
• Gulliver Project
Overview
• ITB is participating in Internet measurement
  activity, especially DNS
• Participation in global Internet community
  for international exposure
DNS @ ITB
• 3 Production Servers
  – ISC BIND 9.6.2
  – DNSSEC not enabled
  – Anycast distribution
• 1 Experimental Server
  – NLnet Unbound 1.4.4
  – DNSSEC (validation) enabled
  – ISC DLV (DNSSEC Lookaside Validation)
Monitoring on ITB side
• Using Munin plugins for Bind & Unbound
  – http://munin-monitoring.org/
Sample Graphics & Data
DITL 2010
DITL 2010
• A Day In The Life of the Internet
  – https://www.dns-oarc.net
• ITB is participating in DITL 2010 in April
• Conducted by Dian Dwi Nugraha (DNS
  Admin)
What it is?
• A large-scale data collection project undertaken
  by CAIDA and OARC (Operations, Analysis, and
  Research Center) every year since 2006
• Participants :
  –   DNS Root Servers
  –   TLD Servers
  –   AS112 nodes
  –   “client-side” iterative/caching resolvers
• Tool : dnscap/tcpdump
Objectives
• Measure Internet growth
  – IPv4 and IPv6 growth
  – Secure/insecure DNS growth
• Uncover possible DNS anomalies in process
Data taken
•   IPv4/IPv6 source and destination query
•   qps (queries per second)
•   secure/insecure (DNSSEC)
•   RRsets (A,AAAA,MX,NS,...)
Toolkit
• Follow procedures in
https://www.dns-oarc.net/ditl/2010
• Toolkit to send data to OARC:
https://www.dns-oarc.net/files/ditl-2010/ditl-
  tools-20100406195635.tar.gz
Raw Data Snapshot
• http://ditl.dns-oarc.net/ditl_20100413_raw/coverage.png
Status
• Collected data in http://ditl.dns-oarc.net/
• Some data collected from ITB:
http://ditl.dns-oarc.net/ditl_20100413_raw/provider-
  reports/itb-ac-id-files.html
• Deeper measurement data can be obtained
  to OARC
GULLIVER PROJECT
What is it?
• Active Measurement Framework
• Probes DNS reachability from worldwide locations
   – RTT, Query Timeout
   – Node ID (hostname.bind or server.id)
• 30 Probe Locations as of Feb. 2010
   – Including South/East Asia and Africa countries
• Targets
   – Root, ccTLD, in‐addr.arpa DNS servers
• http://gulliver.wide.ad.jp/
Gulliver Project in ITB
• Installed by Dikshie in 31st May
• The measurement box:
  http://www.seil.jp/seilseries/seil/seilplus.php
Gulliver Box @ ITB
Gulliver Box @ ITB
Measurement Results
• RTT reachability of root DNS server from ITB
  as seen in http://gulliver.wide.ad.jp/
Status
• ITB box has send data to Gulliver
• ITB hasn’t received Member Page
  username/password from DR. Yuki Sekiya
SUMMARY
Summary
• ITB is ready to participate in Internet
  measurement activity
• Participation in global Internet community
  for international exposure
• Need to conduct thorough analysis from data
Thanks!

More Related Content

PDF
Bhutan Cybersecurity Week 2021: APNIC vulnerability reporting program
PDF
conf2015_TLaGatta_CHarris_Splunk_BusinessAnalytics_DeliveringHighLevelAnalytics
PDF
So You Want a Threat Intelligence Function (But Were Afraid to Ask)
PPTX
Save Your Network – Protecting Manufacturing Data from Deadly Breaches
PPTX
What's New in StealthWatch v6.5
PPTX
Detecting Threats: A Look at the Verizon DBIR and StealthWatch
PPTX
NTXISSACSC2 - Advanced Persistent Threat (APT) Life Cycle Management Monty Mc...
PDF
All Hope is Not Lost Network Forensics Exposes Today's Advanced Security Thr...
Bhutan Cybersecurity Week 2021: APNIC vulnerability reporting program
conf2015_TLaGatta_CHarris_Splunk_BusinessAnalytics_DeliveringHighLevelAnalytics
So You Want a Threat Intelligence Function (But Were Afraid to Ask)
Save Your Network – Protecting Manufacturing Data from Deadly Breaches
What's New in StealthWatch v6.5
Detecting Threats: A Look at the Verizon DBIR and StealthWatch
NTXISSACSC2 - Advanced Persistent Threat (APT) Life Cycle Management Monty Mc...
All Hope is Not Lost Network Forensics Exposes Today's Advanced Security Thr...

What's hot (20)

PDF
Offensive cyber security engineer updated
PPTX
Combating Insider Threats – Protecting Your Agency from the Inside Out
PDF
Using Your Network as a Sensor for Enhanced Visibility and Security
PPTX
Insider threats webinar 01.28.15
PPTX
Enterprise Forensics 101
PPTX
Extending Network Visibility: Down to the Endpoint
PDF
Tools Of The Hardware Hacking Trade Final
PDF
No Easy Breach DerbyCon 2016
PDF
Cisco CSIRT Case Study: Forensic Investigations with NetFlow
PDF
(Sacon) Sumanth Naropanth - IoT network & ecosystem security attacks & secur...
PDF
Security precognition chaos engineering in incident response
PDF
Defense in Depth: Implementing a Layered Privileged Password Security Strategy
PDF
Breaking and entering how and why dhs conducts penetration tests
PPT
Open Science Grid security-atlas-t2 Bob Cowles
PDF
Network Forensics - Your Only Choice at 10G
PDF
Open Security Operations Center - OpenSOC
PDF
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
PPT
DHS ICS Security Presentation
PPTX
Man in the Cloud Attacks
PDF
Ccna sec 01
Offensive cyber security engineer updated
Combating Insider Threats – Protecting Your Agency from the Inside Out
Using Your Network as a Sensor for Enhanced Visibility and Security
Insider threats webinar 01.28.15
Enterprise Forensics 101
Extending Network Visibility: Down to the Endpoint
Tools Of The Hardware Hacking Trade Final
No Easy Breach DerbyCon 2016
Cisco CSIRT Case Study: Forensic Investigations with NetFlow
(Sacon) Sumanth Naropanth - IoT network & ecosystem security attacks & secur...
Security precognition chaos engineering in incident response
Defense in Depth: Implementing a Layered Privileged Password Security Strategy
Breaking and entering how and why dhs conducts penetration tests
Open Science Grid security-atlas-t2 Bob Cowles
Network Forensics - Your Only Choice at 10G
Open Security Operations Center - OpenSOC
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
DHS ICS Security Presentation
Man in the Cloud Attacks
Ccna sec 01
Ad

Viewers also liked (12)

PDF
IPv6 Development in ITB 2013
PPTX
Indonesia Ren Oct 2009
PPT
Dukungan Infrastruktur IT Untuk E Learning Corporate 2009
PDF
What's next for Opisboy - IPv6, FreeBSD and Software Defined Network
PDF
10 Tahun IPv6 di ITB
PDF
Indonesia IPv6 Update - APAN Hanoi 2010
PDF
World IPv6 Day in indonesia
PDF
Update implementasi IPv6 di ITB 2010
PDF
Next Generation Campus Network - ID-NOG 2014
PDF
23 - IDNOG03 - Affan Basalamah (ITB) Achmad Basuki (UNIBRAW) - Overview of In...
PDF
12 - IDNOG03 - Hammam Riza (BPPT) Welcoming Speech
PDF
1 - SDNRG ITB, 10 minutes intro by Affan Basalamah
IPv6 Development in ITB 2013
Indonesia Ren Oct 2009
Dukungan Infrastruktur IT Untuk E Learning Corporate 2009
What's next for Opisboy - IPv6, FreeBSD and Software Defined Network
10 Tahun IPv6 di ITB
Indonesia IPv6 Update - APAN Hanoi 2010
World IPv6 Day in indonesia
Update implementasi IPv6 di ITB 2010
Next Generation Campus Network - ID-NOG 2014
23 - IDNOG03 - Affan Basalamah (ITB) Achmad Basuki (UNIBRAW) - Overview of In...
12 - IDNOG03 - Hammam Riza (BPPT) Welcoming Speech
1 - SDNRG ITB, 10 minutes intro by Affan Basalamah
Ad

Similar to DNS Measurement Activity on ITB 2010 (20)

PPTX
Partner webinar featuring CatDV
PDF
Ben Evans SPEDDEXES 2014
PDF
IPv6 Deployment: Why and Why not? - HostingCon 2013
PDF
12.00 - Dr. Tim Chown - University of Southampton
PPTX
Efficient & effective data management for research projects : ILRI's Data Ma...
PPTX
ION Bangladesh - IETF Update
PDF
SCAPE - Scalable Preservation Environments
PPTX
IETF Update: Making the Internet Work Better
PDF
Rakuten’s Journey with Splunk - Evolution of Splunk as a Service
PPTX
PDF
GEO Analytics Canada Overview April 2020
PDF
Tech 2 Tech IPv6 presentation
PDF
StarlingX - A Platform for the Distributed Edge | Ildiko Vancsa
PDF
Largest Active Measurements Network: RIPE Atlas
PPTX
OpenStack Marketing Meeting Oct 2
PDF
ION Islamabad - What's Happening at the IETF?
PDF
IBM Internet-of-Things architecture and capabilities
PPT
Big data in the energy sector
PDF
JPNIC Update
PDF
Outsourcing SDWorx Mainframe environment - Lily Craps
 
Partner webinar featuring CatDV
Ben Evans SPEDDEXES 2014
IPv6 Deployment: Why and Why not? - HostingCon 2013
12.00 - Dr. Tim Chown - University of Southampton
Efficient & effective data management for research projects : ILRI's Data Ma...
ION Bangladesh - IETF Update
SCAPE - Scalable Preservation Environments
IETF Update: Making the Internet Work Better
Rakuten’s Journey with Splunk - Evolution of Splunk as a Service
GEO Analytics Canada Overview April 2020
Tech 2 Tech IPv6 presentation
StarlingX - A Platform for the Distributed Edge | Ildiko Vancsa
Largest Active Measurements Network: RIPE Atlas
OpenStack Marketing Meeting Oct 2
ION Islamabad - What's Happening at the IETF?
IBM Internet-of-Things architecture and capabilities
Big data in the energy sector
JPNIC Update
Outsourcing SDWorx Mainframe environment - Lily Craps
 

Recently uploaded (20)

PPTX
Big Data Technologies - Introduction.pptx
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Electronic commerce courselecture one. Pdf
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PPTX
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
PPT
Teaching material agriculture food technology
PDF
Approach and Philosophy of On baking technology
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
KodekX | Application Modernization Development
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
Big Data Technologies - Introduction.pptx
Mobile App Security Testing_ A Comprehensive Guide.pdf
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Electronic commerce courselecture one. Pdf
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
Teaching material agriculture food technology
Approach and Philosophy of On baking technology
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
NewMind AI Monthly Chronicles - July 2025
Dropbox Q2 2025 Financial Results & Investor Presentation
The Rise and Fall of 3GPP – Time for a Sabbatical?
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
KodekX | Application Modernization Development
Diabetes mellitus diagnosis method based random forest with bat algorithm
Understanding_Digital_Forensics_Presentation.pptx
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Advanced methodologies resolving dimensionality complications for autism neur...

DNS Measurement Activity on ITB 2010

  • 1. DNS Measurement Activity on ITB 2010 Affan Basalamah
  • 2. Outline • Overview • DITL 2010 by OARC • Gulliver Project
  • 3. Overview • ITB is participating in Internet measurement activity, especially DNS • Participation in global Internet community for international exposure
  • 4. DNS @ ITB • 3 Production Servers – ISC BIND 9.6.2 – DNSSEC not enabled – Anycast distribution • 1 Experimental Server – NLnet Unbound 1.4.4 – DNSSEC (validation) enabled – ISC DLV (DNSSEC Lookaside Validation)
  • 5. Monitoring on ITB side • Using Munin plugins for Bind & Unbound – http://munin-monitoring.org/
  • 8. DITL 2010 • A Day In The Life of the Internet – https://www.dns-oarc.net • ITB is participating in DITL 2010 in April • Conducted by Dian Dwi Nugraha (DNS Admin)
  • 9. What it is? • A large-scale data collection project undertaken by CAIDA and OARC (Operations, Analysis, and Research Center) every year since 2006 • Participants : – DNS Root Servers – TLD Servers – AS112 nodes – “client-side” iterative/caching resolvers • Tool : dnscap/tcpdump
  • 10. Objectives • Measure Internet growth – IPv4 and IPv6 growth – Secure/insecure DNS growth • Uncover possible DNS anomalies in process
  • 11. Data taken • IPv4/IPv6 source and destination query • qps (queries per second) • secure/insecure (DNSSEC) • RRsets (A,AAAA,MX,NS,...)
  • 12. Toolkit • Follow procedures in https://www.dns-oarc.net/ditl/2010 • Toolkit to send data to OARC: https://www.dns-oarc.net/files/ditl-2010/ditl- tools-20100406195635.tar.gz
  • 13. Raw Data Snapshot • http://ditl.dns-oarc.net/ditl_20100413_raw/coverage.png
  • 14. Status • Collected data in http://ditl.dns-oarc.net/ • Some data collected from ITB: http://ditl.dns-oarc.net/ditl_20100413_raw/provider- reports/itb-ac-id-files.html • Deeper measurement data can be obtained to OARC
  • 16. What is it? • Active Measurement Framework • Probes DNS reachability from worldwide locations – RTT, Query Timeout – Node ID (hostname.bind or server.id) • 30 Probe Locations as of Feb. 2010 – Including South/East Asia and Africa countries • Targets – Root, ccTLD, in‐addr.arpa DNS servers • http://gulliver.wide.ad.jp/
  • 17. Gulliver Project in ITB • Installed by Dikshie in 31st May • The measurement box: http://www.seil.jp/seilseries/seil/seilplus.php
  • 20. Measurement Results • RTT reachability of root DNS server from ITB as seen in http://gulliver.wide.ad.jp/
  • 21. Status • ITB box has send data to Gulliver • ITB hasn’t received Member Page username/password from DR. Yuki Sekiya
  • 23. Summary • ITB is ready to participate in Internet measurement activity • Participation in global Internet community for international exposure • Need to conduct thorough analysis from data