|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/comprehensive-dns-security/
课程评论:没有评论
**课程总结:全面DNS安全与DNSSEC** 本课程深入探讨域名系统(DNS)的方方面面,从其起源、演变、工作原理到如何实现安全。学员将学习DNS的基本功能、历史、结构、架构以及相关的安全威胁。 **核心内容:** * **DNS基础知识:** 区分权威DNS服务器和递归DNS服务器;理解区域文件(Zone File)和反向区域文件(Reverse Zone File)的概念。 * **DNS安全与攻击:** 了解针对DNS系统的常见攻击方式,包括但不限于: * DNS指纹识别(Fingerprinting the DNS) * 分布式拒绝服务(DDoS)攻击DNS * DNS欺骗(DNS Spoofing) * DNS放大攻击(DNS Amplification attacks) * 缓存投毒(Cache poisoning) * 域名劫持(Domain hijacking) * DNS隧道(DNS Tunneling) * **DNS安全实践:** 学习如何保护您的基础设施免受上述攻击,并了解BIND DNS在递归服务器和权威服务器配置方面的应用。 * **命令行工具与数据包分析:** 掌握使用`whois`、`dig`、`hping3`、`fpdns`等命令行工具进行DNS分析;学会解读DNS数据包信息,包括头部、应答部分和附加信息部分。 * **高级安全特性:** 学习如何使用响应策略区域(Response Policy Zones, RPZ)过滤入站请求,以及如何追踪恶意域名。 * **DNSSEC(DNS安全扩展):** 探索DNSSEC框架,学习其如何通过签名和加密来保护DNS通信;同时也会涵盖TSIG(Transaction Signature)技术。 **课程特色:** 本课程将根据学员的反馈和提问,持续更新相关内容,并鼓励学员提出希望深入了解的课题,以确保学习内容的实用性和前沿性。
Welcome to the "Comprehensive DNS Security and DNSSEC" course.In this course, you will learn how the Domain Name System came to be, how it has evolved, how it works and how to make it secure. You will explore DNS functions, history, structure, architecture, and security.You will learn the difference between an authoritative DNS server and a recursive DNS server. You will understand what is a zone file and what is a reverse zone file. You will see the most common attacks against DNS systems and how to secure your infrastructure.You will understand BIND DNS configuration as a recursive server as well as as an authoritative server.We will cover the techniques used to target DNS systems as well as those that take advantage of the DNS system to carry out a malicious activity. Examples include:Fingerprinting the DNSDistributed Denial-of-Service (DDoS) against DNS. DNS SpoofingDNS Amplification attacks Cache poisoningDomain hijackingDNS TunnelingYou will learn to use different command line tools and utilities, such as whois, dig, hping3, fpdns, etc.You will learn to read the DNS packet information, such as the header, the answer section, and the "additional information" section.You will be able to understand filtering of incoming requests using Response Policy Zones, and how to track down malicious domains.You will discover DNSSEC, the framework that is being adopted to sign and secure DNS communications. TSIG is also covered in this course. This course will be kept updated with relevant material when the students ask for it. So, don't hesitate to leave a message. Feel free to suggest topics you'd like to understand more.