Anycast DNS

Sender Policy Framework

Anycast DNS - fast and high-availability

Fail-safe and signed DNS zones at the touch of a button

Request Anycast DNS White Paper

What is DNS?

The Domain Name System (DNS) is used to resolve domain names (such as wikipedia.org) into IP addresses. For example, a browser (like Google Chrome) makes a request to the DNS to find out the IP address of the web server (of wikipedia.org) and finally be able to visit the website

What is Anycast?

Every server directly connected to the public Internet has a unique IP address. If one IP address is assigned to one physical server per IP address, this is called "Unicast". This infrastructure is very vulnerable to failures and is considered obsolete. Due to maintenance work or power failure of a server, critical services lie flat. With "Anycast", on the other hand, behind an IP address there is a cloud of servers. This offers higher availability of services and load balancing of requests as well as other advantages

What is Anycast DNS?

"Anycast DNS" is a combination of both technologies to use the advantages of Anycast in the demanding DNS. Instead of a one-to-one relationship like unicast, Anycast connects one IP address on the Internet to several DNS servers. In the case of a query (e.g. by calling google.de) the request can be answered by a number of servers, usually the geographically closest server responding. This reduces latency worldwide, increases availability of the respective DNS service and provides additional protection against DDoS attacks. A simple concept which, in contrast to unicast, meets today's requirements for server infrastructures

Unicast and Anycast in comparison

Unicast and Anycast in comparison
Unicast
Anycast

Scope of services

nicmanager - Anycast DNS
  • User-friendly DNS templates, wizards and generators
  • Two highly available and fast anycast clouds
  • 100% uptime of DNS resolution guaranteed
  • Zone management integrated into domain management solution
DNSSEC: activate at the push of a button without additional costs
  • Signed zones guarantee authenticity
  • BSI recommendation against DNS cache poisoning
  • No own key management required
  • DNSSEC is not supported by all TLDs
Optional features
  • Own virtual name servers
  • Own Hidden primary Nameserver
  • Own secondary nameservers
  • Reverse DNS for own IPs
  • API for automation
© 2012 - 2020 nicmanager.com