Home Dns
Post
Cancel

Dns

๐ŸŒ Why DNS is Coolโ€ฆ and Not So Cool

1
2
3
4
5
6
7
8
9
10
11
12
    โ•”โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•—
    โ•‘               ๐ŸŒ DNS ๐ŸŒ               โ•‘
    โ•‘         The Internet's Magic         โ•‘
    โ•‘            Phonebook ๐Ÿ“š              โ•‘
    โ•šโ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•
                          โ”‚
                          โ–ผ
         โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
         โ”‚  google.com โ†’ 172.217.16.196   โ”‚
         โ”‚  github.com โ†’ 140.82.112.3     โ”‚
         โ”‚  reddit.com โ†’ 151.101.65.140   โ”‚
         โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

The Domain Name System (DNS) is one of the internetโ€™s unsung heroes. It translates human-friendly names like google.com into IP addresses that machines understand. Basically, DNS is the internetโ€™s phonebookโ€”but way faster and more magical.


๐Ÿ˜Ž Why DNS is Cool

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
    โ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ•— โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— 
    โ–ˆโ–ˆโ•‘  โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•”โ•โ•โ•โ•โ•โ–ˆโ–ˆโ•‘ โ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ•”โ•โ•โ•โ•โ•โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•—
    โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ• โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ•
    โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ•— โ–ˆโ–ˆโ•”โ•โ•โ•  โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•—
    โ–ˆโ–ˆโ•‘  โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•‘  โ–ˆโ–ˆโ•‘โ•šโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•‘  โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•‘  โ–ˆโ–ˆโ•‘
    โ•šโ•โ•  โ•šโ•โ•โ•šโ•โ•  โ•šโ•โ• โ•šโ•โ•โ•โ•โ•โ•โ•šโ•โ•  โ•šโ•โ•โ•šโ•โ•โ•โ•โ•โ•โ•โ•šโ•โ•  โ•šโ•โ•
    
           โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
           โ”‚  > ACCESSING DNS_MATRIX.exe     โ”‚
           โ”‚  > INITIALIZING PROTOCOLS...    โ”‚
           โ”‚  > CONNECTION ESTABLISHED โœ“     โ”‚
           โ”‚  > WELCOME TO THE GRID          โ”‚
           โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           
         โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ  โ–ˆโ–ˆโ–ˆโ–ˆ  โ–ˆโ–ˆ    โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ
         โ–ˆโ–ˆ    โ–ˆโ–ˆ    โ–ˆโ–ˆ  โ–ˆโ–ˆ    โ–ˆโ–ˆ
         โ–ˆโ–ˆ    โ–ˆโ–ˆ    โ–ˆโ–ˆโ–ˆโ–ˆ      โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ
         โ–ˆโ–ˆ    โ–ˆโ–ˆ    โ–ˆโ–ˆ  โ–ˆโ–ˆ           โ–ˆโ–ˆ
         โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ  โ–ˆโ–ˆโ–ˆโ–ˆ  โ–ˆโ–ˆ    โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ
              
              01001000 01000001 01000011
              01001011 01000101 01010010

๐ŸŽฏ Easy to Remember

Who wants to remember 172.217.16.196? DNS lets us type google.com.

๐ŸŒ Global Magic

DNS servers around the world make sure you get the fastest route to a site.

๐Ÿ”„ Flexibility

Change a serverโ€™s IP behind a domain without breaking usersโ€™ bookmarks.

๐Ÿ›ก๏ธ Foundation for Security

With DNSSEC, we can prevent some nasty attacks like spoofing.

1
2
3
4
       โ•ญโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ•ฎ
      โ”‚  โ—•     โ—•  โ”‚    "DNS rocks!"
      โ”‚     ฯ‰     โ”‚  
       โ•ฐโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ•ฏ

๐Ÿ˜ฌ Why DNS is Not So Cool

1
2
3
4
5
6
7
    โš ๏ธ  DANGER ZONE โš ๏ธ
    
    ๐Ÿ’ฅ Failures    ๐Ÿ•ต๏ธ Privacy
         โ”‚            โ”‚
         โ””โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”˜
               โ”‚
         ๐ŸŽฏ Attacks โ†โ”€โ”€โ”€ ๐ŸŒ Caching

๐Ÿ’ฅ Single Points of Failure

If your DNS server goes down, so does access to your site.

๐Ÿ•ต๏ธ Privacy Concerns

Standard DNS queries are not encrypted (unless you use DoH or DoT), so anyone can see what sites you visit.

๐ŸŽฏ Target for Attacks

DDoS attacks on DNS servers can cripple major services.

๐ŸŒ Caching Pitfalls

Wrong or outdated cached entries can break access until TTL expires.

1
2
3
4
5
6
         โ•ญโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ•ฎ
        โ”‚  โœ•     โœ•  โ”‚    "Oops! DNS failed..."
        โ”‚     ___   โ”‚  
         โ•ฐโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ•ฏ
              โ”‚
          ๐Ÿ”ฅERROR๐Ÿ”ฅ

๐Ÿ”— More DNS Fun

For a deeper dive, check out my other document here.


๐ŸŽญ TL;DR

1
2
3
4
5
6
7
8
9
10
11
    โ•”โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•—
    โ•‘              ๐Ÿง™โ€โ™‚๏ธ DNS WIZARD ๐Ÿง™โ€โ™‚๏ธ              โ•‘
    โ•‘                                        โ•‘
    โ•‘  โœ… Invisible but CRITICAL            โ•‘
    โ•‘  โœ… Convenience & Speed               โ•‘
    โ•‘  โœ… Flexibility                       โ•‘
    โ•‘  โš ๏ธ  Point of Failure                 โ•‘
    โ•‘  โš ๏ธ  Attack Target                    โ•‘
    โ•‘                                        โ•‘
    โ•‘    "The unsung hero of the web!" ๐ŸŒ   โ•‘
    โ•šโ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•โ•

DNS is like the unsung wizard behind the curtainโ€”mostly invisible but critical. Itโ€™s awesome for convenience, speed, and flexibility, but donโ€™t forget it can also be a point of failure and a target for attacks.

1
2
3
4
5
6
                    ๐ŸŒŸ THE END ๐ŸŒŸ
                      โ•ญโ”€โ”€โ”€โ”€โ”€โ•ฎ
                     โ”‚  DNS  โ”‚
                      โ•ฐโ”€โ”€โ”ฌโ”€โ”€โ•ฏ
                         โ”‚
                    Made with โค๏ธ
This post is licensed under CC BY 4.0 by the author.