^ Top

NANOG Meeting Presentation Abstract

dnstap: high speed DNS logging without packet capture
Meeting: NANOG60
Date / Time: 2014-02-12 2:30pm - 3:00pm
This item is webcast
Room: Peachtree Ballroom
Presenters: Speakers:
Robert Edmonds, Farsight Security, Inc..
Abstract: The DNS protocol presents interesting logging challenges. Common approaches to DNS logging include instrumentation internal to the DNS server which generates textual log messages ("query logs"), and external passive observation of DNS network traffic ("packet capture"). This presentation will outline some of the strengths and weaknesses of these two approaches and will showcase a hybrid vendor-neutral logging implementation, "dnstap", that can provide at high speed the high quality data needed for DNS monitoring applications such as passive DNS replication and query logging.
Files: pdfdnstap: high speed DNS logging without packet capture(PDF)
youtubednstap: high speed DNS logging without packet capture
Sponsors: None.

Back to NANOG60 agenda.

NANOG60 Abstracts

  • Datacenter Track
    Moderators:
    Martin Hannigan, Akamai Technologies, Inc.; Daniel Golding, Iron Mountain;
  • Datacenter Track
    Moderators:
    Martin Hannigan, Akamai Technologies, Inc.; Daniel Golding, Iron Mountain;
  • BGP 101
    Speakers:
    Dawit Birhanu, Cisco Systems;
  • BGP 102
    Speakers:
    Dawit Birhanu, Cisco Systems;

 

^ Back to Top