Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Comprehensive DNS Security and DNSSEC
Rating: 4.3 out of 5(58 ratings)
1,349 students

Comprehensive DNS Security and DNSSEC

Learn Domain Name System, how it works, and how secure it. Explore DNSSEC and TSIG. Practice on BIND server.
Created byTaoufik Z.
Last updated 9/2026
English
English

What you'll learn

  • You will learn DNS protocol architecture.
  • You willl understand DNS security mechanisms such as DNSSEC, RPZ, ACL, Chroot, etc.
  • You wlll dive into DNS Security Extensions, or DNSSEC.
  • You will explore DNS Attacks such as DDoS, DNS amplification, cache poisoning, website defacing, etc.
  • You will see the best practices for configuring and securing DNS.
  • You'll be configuring BIND DNS as a resolver server and as an authoritative server with a focus on security.

Course content

3 sections26 lectures1h 32m total length
  • Course Overview2:07

    An overview of the content of "Comprehensive DNS Security and DNSSEC" course.

  • DNS History3:08

    Trace the history of the domain name system from hosts.txt and ip addresses to its birth, and explain the root to gTLD and ccTLD hierarchy managed by IANA and ICANN.

  • DNS Architecture4:35

    Discover dns architecture with authoritative servers and resolvers. See how a client queries example.com, uses dig to reach name servers, and how udp 53 and tcp zone transfers affect security.

  • DNS Zone File4:12

    Explore how a zone file on the authoritative server stores domain DNS records, TTL, and the serial with refresh settings, and review A, CNAME, MX, NS, TXT, PTR, and AAA.

  • Bind zone file
  • DNS Reverse Zone1:51

    Configure a reverse zone for the 190.168.1.0/24 block using the 1.168.192.in-addr.arpa file and a ptr record that maps the IP address to mail.acme.org.

  • Whois4:14

    Explore how whois queries reveal registered domains, registries, and registrars, showing domain statuses via EPP, such as clientUpdateProhibited and clientTransferProhibited, with examples like reddit.com.

  • DNS Packet - Part 13:50

    Demonstrate how DNS packets are built and transported over UDP, detailing the header, question, answer, and additional sections, with the transaction ID and flags.

  • DNS Packet - Part 21:12

    Understand how a recursive server validates a DNS response from the authoritative server by matching the source port, destination port, destination IP, and transaction ID, demonstrated with a Wireshark snippet.

  • The DNS Packet

Requirements

  • Basic networking concepts

Description

Comprehensive DNS Security & DNSSEC: Secure, Protect and Manage DNS Infrastructure

Master DNS Security, DNSSEC, BIND DNS Administration, and DNS Attack Detection to protect modern network infrastructures.

The Domain Name System (DNS) is one of the most critical components of the Internet. Every website, cloud service, application, and enterprise network relies on DNS to function. Yet DNS remains one of the most targeted services by cybercriminals through attacks such as DNS spoofing, cache poisoning, DNS tunneling, DDoS attacks, and domain hijacking.

In this comprehensive course, you will gain a deep understanding of how DNS works, how it evolved, how attackers exploit it, and how to secure DNS infrastructures using industry best practices and DNSSEC.

Whether you are a cybersecurity professional, network engineer, system administrator, SOC analyst, penetration tester, or IT student, this course will provide the practical knowledge required to secure and manage DNS environments confidently.

What You Will Learn

DNS Fundamentals

  • Understand the architecture and evolution of the Domain Name System (DNS)

  • Learn how DNS resolution works from client request to final response

  • Understand DNS records and resource record types

  • Differentiate between authoritative and recursive DNS servers

  • Master zone files and reverse DNS zones

  • Analyze DNS packet structures and responses

DNS Administration with BIND

  • Install and configure BIND DNS servers

  • Configure authoritative DNS servers

  • Configure recursive DNS resolvers

  • Create and manage DNS zones

  • Implement DNS security best practices

  • Troubleshoot DNS issues using industry-standard tools

DNS Security & Threat Detection

  • Identify common DNS attack techniques

  • Understand how attackers abuse DNS infrastructure

  • Detect malicious DNS activity

  • Investigate suspicious domains and DNS traffic

  • Implement DNS filtering and security controls

DNS Attacks Covered

  • DNS Fingerprinting

  • DNS Enumeration

  • DNS Spoofing

  • Cache Poisoning

  • DNS Amplification Attacks

  • Distributed Denial of Service (DDoS) Attacks

  • Domain Hijacking

  • DNS Tunneling

  • DNS-Based Data Exfiltration

  • Reconnaissance Through DNS

DNSSEC & Advanced Security

  • Understand why DNSSEC was created

  • Learn DNSSEC architecture and trust chains

  • Configure DNSSEC signing and validation

  • Understand DNSKEY, DS, RRSIG, and NSEC records

  • Implement DNSSEC to protect against spoofing and cache poisoning

  • Configure and use TSIG for secure DNS communications

  • Apply DNS hardening techniques for production environments

Practical Tools and Analysis

Throughout the course, you will work with professional DNS and security tools including:

  • dig

  • whois

  • hping3

  • fpdns

  • nslookup

  • DNS packet analyzers

You will learn how to:

  • Query and troubleshoot DNS infrastructures

  • Analyze DNS traffic and packets

  • Interpret DNS headers and resource records

  • Identify indicators of compromise within DNS activity

  • Investigate malicious domains and suspicious DNS behavior

Who This Course Is For

  • Cybersecurity Professionals

  • Security Analysts (SOC Analysts)

  • Network Engineers

  • System Administrators

  • Cloud Engineers

  • Penetration Testers

  • Incident Responders

  • Students Preparing for Cybersecurity Careers

  • Anyone Interested in DNS Security and DNSSEC

Why Take This Course?

By the end of this course, you will understand not only how DNS works but also how to secure it against modern cyber threats. You will develop practical skills in DNS administration, DNSSEC deployment, attack detection, and DNS security monitoring that can be immediately applied in enterprise, cloud, and hybrid environments.

The course is regularly updated to reflect emerging DNS security threats, new DNSSEC developments, and student feedback to ensure you stay current with the latest best practices in cybersecurity and network security.

Who this course is for:

  • Information Security Professionals
  • Network Engineers
  • IT Architects
  • Security Managers
  • Infrastructure Engineers