[190996] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: DNS Services for a registrar

daemon@ATHENA.MIT.EDU (Jared Mauch)
Fri Aug 12 08:30:10 2016

X-Original-To: nanog@nanog.org
From: Jared Mauch <jared@puck.nether.net>
In-Reply-To: <BLUPR05MB595618F2C80B2C919F98025B41F0@BLUPR05MB595.namprd05.prod.outlook.com>
Date: Fri, 12 Aug 2016 08:28:10 -0400
To: Ryan Finnesey <ryan@finnesey.com>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org


> On Aug 12, 2016, at 1:56 AM, Ryan Finnesey <ryan@finnesey.com> wrote:
>=20
> We need to provide DNS services for domains we offer as a registrar.  =
We were discussing internally the different options for the deployment.  =
Does anyone see a down side to using IaaS on AWS and Azure?

My big concern would be the current lack of v6 support on AWS for such a =
deployment.  I suspect it=E2=80=99s coming soon as they just announced =
IPv6 support on S3 yesterday.

How many zones do you expect to scale to?  I=E2=80=99ve been running a =
free secondary DNS service for many years on BIND, but moving to =
something else makes a lot of sense these days.

Do you have a lot of DNS server experience in-house?  There=E2=80=99s a =
lot of little things that come up along the way.  You really should =
consider being subscribed to the dns-operations list and asking there as =
well.

> We were also kicking around the idea of a PaaS offering and using =
Azure DNS or AWS Route 53.

I like having good control over my own fate, so would prefer running my =
own service, but plenty of people use hosted DNS at their providers, and =
there=E2=80=99s plenty of folks who can sell you a service from dyn to =
neustar with their own cost models.

I would either provide a completely opaque service offering where you =
retain control of the NS records so can easily move/renumber as you =
scale up, or consider a solution which can be expanded globally as =
needed over time. =20

I=E2=80=99m able to host ~10k zones in my free secondary service without =
issues, but to =E2=80=9Ctake the next step=E2=80=9D requires decoupling =
20 years of history I=E2=80=99m dragging around.

- Jared=

home help back first fref pref prev next nref lref last post