From Fedora Project Wiki
< SIGs
Domain Name Services Special Interest Group
Goal
Improve and collaborate on name resolution servers and clients working on Fedora.
Topics
- DNS client tools
- DNSSEC deployment on both server and clients
- Common DNS cache configuration
- Networking/NameResolution
- Networking/Ideas/NetworkNameResolution
- Changes/DNS Over TLS
- Changes/Default Local DNS Resolver
- How to enable DNS over TLS on implementation-indepepdendent way?
Infrastructure
- DNS sysadmin guide - description of infrastructure used for Fedora
- Fedora server dnsmasq article
IETF Standards
- Domain Name System Operations (dnsop) group documents
- Adaptive DNS Discovery (add) group documents
- DNS PRIVate Exchange (dprive) group documents
- DNS Delegation (deleg) group documents
- Internet Area Working Group (intarea) group documents
- DNS Extensions (dnsext) group documents (concluded)
- Multiple Interfaces (mif) group documents (concluded)
- Extensions for Scalable DNS Service Discovery (dnssd) group documents
- ICANN annotations
Implementations
Universal
- bind9 - pkg:bind, pkg:bind9-next, upstream, upstream source docs
- in RHEL 7+
- Feature matrix
- bind9 Mattermost channel
Recursive
- knot-resolver - pkg:knot-resolver, upstream,docs, upstream source
- powerdns-recursor - pkg:pdns-recursor, upstream, upstream source
- unbound - pkg:unbound, upstream, upstream source
- in RHEL 7+
Stub resolvers
- dnsmasq - pkg:dnsmasq, upstream, upstream source
- in RHEL 7+
- stubby - pkg:stubby, upstream source
- DNS over TLS
- systemd-resolved - pkg:systemd, upstream, upstream source
- in RHEL 8+ (Tech. preview)
- Default in Fedora Workstation and Fedora Server
- dnsdist - pkg:dnsdist upstream
- DNS over TLS + DNS over HTTPS forwarding support
- Load-balancer, can be used as a stub too.
- Does not cache in default configuration
- unwind - upstream
- Used on OpenBSD, written by Florian Obser
- Uses resolvd and route command to add forwarders
- Not in Fedora
Authoritative
Benefit to Fedora
A place to interact and collaborate on different open source implementations providing authoritative, recursive or just stub implementations using DNS protocol.
Packages included
- dns-sig group sources
- packager dashboard - bugs summary for packages in DNS SIG
Communication
Mailing list
IRC
#dns
channel on Libera.Chat- dns-channel resources
Matrix
- #dns - leads just to above IRC
- #dns:fedora.im - Fresh new empty room