DNS Reference

DNS server administration (BIND9 on VyOS dual-HA), query tools, zone management, and troubleshooting.

Topics

Topic Description

dig

DNS query tool — record lookups, tracing, DNSSEC, batch queries

nslookup

Legacy lookup tool — cross-platform, interactive mode, Windows/PowerShell

BIND

BIND9 server configuration — options, zones, records, rndc, logging

named

named daemon — service management, rndc, file permissions, diagnostics

Records

DNS record types — A, AAAA, CNAME, MX, NS, SOA, PTR, SRV, TXT, CAA

Zones

Zone files — forward, reverse, serial management, transfers, validation

Server Types

Authoritative, recursive, forwarding, master, slave, stub, stealth

Authoritative

Authoritative-only servers — master/slave HA, SOA design, delegation

Recursive

Recursive resolvers — caching, root hints, security, rate limiting

Caching

DNS cache — inspection, flushing, client-side cache, TTL strategy

Forwarders

Forwarding configuration — global, per-zone, VyOS dual-BIND architecture

Split-Horizon

Split-brain DNS — BIND views, internal/external zones, testing

DNSSEC

DNSSEC — validation, trust chains, DNSKEY, DS, RRSIG, troubleshooting

Troubleshooting

Systematic DNS debugging — reachability, records, cache, delegation