News and updates

Net::DNS::SEC 1.01 released

Mon, 3 Aug 2015
Crypto funcs for Net::DNS 1.01 DNSSEC RR's
Net::DNS::SEC 2.01 release announcement. Project website. Direct Download. Changes.

getdns 0.3.1 released

Sat, 18 Jul 2015
Bugfixes, native stub DNSSEC validation, lists of transports
Announcement. Direct Download. API specification.

Unbound 1.5.4 released

Thu, 9 July 2015
negative cache options, algorithm lenience option, ratelimits and bug fixes.
Unbound website. Direct Download. Changes.

Net::DNS 1.01 released

Mon, 6 Jul 2015
First major release, DNSSEC RR's integrated
Net::DNS 2.01 release announcement. Project website. Direct Download. Changes.

NLnet Labs Annual Report 2014

Wed, 30 June 2015
We are happy to present NLnet Labs Annual report 2014. In it we present an overview of Labs' various activities and describe their impact.
Annual Report 2014 (PDF).

NSD 4.1.3 released

Tue, 23 Jun 2015
bug fixes, fix when remove child zone, tsig hash algorithms, add long list of zones more easily.
NSD project page. Direct Download.

NSD 3.2.19 released

Thu, 28 May 2015
Bugfixes, tsig hashes, CDS, CDNSKEY, DNAME TTL. End-of-life has been announced for NSD 3 support.
NSD project page. Direct Download.

NSD 3 end of support May 20th, 2016

Tue, 20 May 2015
With this notification, NLnet Labs makes known the end-of-support for NSD 3. Support for NSD 3 will be continued for one year (date May 20th, 2016).
NSD project page. Email announcement.

NSD 4.1.2 released

Tue, 14 Apr 2015
log level 1 improvements, log notify serial, zone reader crash fixes, integer overflow bugfixes.
NSD project page. Direct Download.

Unbound 1.5.3 released

Tue, 10 March 2015
Fix daemon exit after reload, and Solaris portability.
Unbound website. Direct Download. Changes.

BGP Route Leaks Analysis

Fri, 6 Mar 2015
A route leak is a violation of the policies between the networks involved. In this project, we obtain routing information from differecent sources and make inferences to detect possible route leaks. These potential route leaks have been further investigated on their duration, the type of violation, and the type and origin of network that caused the leak-detection.
MSc. report (PDF).

Akkerhuis selected for DNS Root Zone KSK design team

Thu, 5 Feb 2015
Jaap Akkerhuis from NLnet Labs has been selected for the DNS Root Zone KSK rollover plan design team.
ICANN Announcements.

ISC and NLnet Labs Joins Forces

Mon, 10 Nov 2014
ISC and NLnet Labs have signed an agreement to make available a combined Advance Security Notification subscription on their software products.
Press release.

BGP Evolution Analysis

Thu, 31 Jul 2014
The Internet has been growing rapidly for many years. A logical consequence of the growth trend is the increase in effort to discover reachability and routing information of all the networks. The project investigates the different components which together form the actual update message signal and tries to find a reason behind the growth factor.
MSc. report (PDF).

Measuring the Deployment of DNSSEC over the Internet

Thu, 2 Jul 2014
The deployment of DNSSEC is measured with the RIPE Atlas infrastructure. The results provide new insight on the distribution of DNSSEC support among resolvers, and notably show that around 90% of resolvers are DNSSEC-aware, and about 30% validate answers.
MSc. report (PDF).

Open Data Analysis to Retrieve Sensitive Information Regarding National-Centric Critical Infrastructures

Mon, 3 Feb 2014
Open Data repositories store a variety of information from country governments and private sectors. A concern is that with publishing data, sensitive information can be obtained by visual analytic techniques. The report shows that it is possible to retrieve precise locations where critical infrastructures overlap.
MSc. report (PDF).

Securing the last mile of DNS with CGA-TSIG

Tue, 8 Jan 2014
TSIG with shared keys is not scalable as a solution for the DNS last mile problem. CGA-TSIG extends TSIG with CGA so that shared secrets are no longer required. This research investigates the CGA-TSIG proposal by doing a security analysis and by making a PoC implementation in ldns.
MSc. report (PDF).

Wed Sep 25 2013

© Stichting NLnet Labs

Science Park 400, 1098 XH Amsterdam, The Netherlands, subsidised by NLnet and SIDN.