<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>DNS on My IT Journal</title>
    <link>https://my-it-blog.netlify.app/tags/dns/</link>
    <description>Recent content in DNS on My IT Journal</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Thu, 09 Jul 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://my-it-blog.netlify.app/tags/dns/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Secondary DNS Server</title>
      <link>https://my-it-blog.netlify.app/posts/secondary-dns-server/</link>
      <pubDate>Thu, 09 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/secondary-dns-server/</guid>
      <description>&lt;h2 id=&#34;objective&#34;&gt;Objective&lt;/h2&gt;
&lt;p&gt;Configure a Secondary DNS server that automatically replicates DNS zones from the Primary DNS server using zone transfers (AXFR).&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;environment&#34;&gt;Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 Primary DNS Server VM + 1 Secondary DNS Server + 1 Web Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;network-topology&#34;&gt;Network Topology&lt;/h2&gt;
&lt;h2 id=&#34;dns-tolopogy&#34;&gt;&lt;img alt=&#34;dns-tolopogy&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/secondary-dns-server/topology.png&#34;&gt;&lt;/h2&gt;
&lt;h2 id=&#34;prerequisites&#34;&gt;Prerequisites&lt;/h2&gt;
&lt;p&gt;This lab builds upon the following previous labs:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Private DNS Infrastructure with BIND9&lt;/li&gt;
&lt;li&gt;Hosting Multiple Websites on One Server Using Nginx&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;The following components are assumed to already be configured:&lt;/p&gt;</description>
    </item>
    <item>
      <title>HTTPS with Nginx using a Private Certificate Authority</title>
      <link>https://my-it-blog.netlify.app/posts/private-certificate-authority/</link>
      <pubDate>Wed, 08 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/private-certificate-authority/</guid>
      <description>&lt;h1 id=&#34;https-with-nginx-using-a-private-certificate-authority&#34;&gt;HTTPS with Nginx using a Private Certificate Authority&lt;/h1&gt;
&lt;h2 id=&#34;objective&#34;&gt;Objective&lt;/h2&gt;
&lt;p&gt;Secure an existing Nginx website using HTTPS and a certificate signed by a private Certificate Authority.&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;environment&#34;&gt;Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 DNS Server VM + 1 Web Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;network-topology&#34;&gt;Network Topology&lt;/h2&gt;
&lt;p&gt;&lt;img alt=&#34;dns-topology&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/private-certificate-authority/dns-topology.png&#34;&gt;&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;prerequisites&#34;&gt;Prerequisites&lt;/h2&gt;
&lt;p&gt;This lab builds upon the Private DNS Infrastructure with BIND9. The following components are assumed to already be configured:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;BIND9 installed and running on the DNS server.&lt;/li&gt;
&lt;li&gt;The company.lab DNS zone created and configured.&lt;/li&gt;
&lt;li&gt;The zone file (/etc/bind/db.company.lab) already exists.&lt;/li&gt;
&lt;li&gt;The client is configured to use the internal DNS server (192.168.10.10) via Netplan.&lt;/li&gt;
&lt;li&gt;DNS resolution between the client and the DNS server has been verified.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;phase-1---verify-dns-resolution&#34;&gt;Phase 1 - Verify DNS Resolution&lt;/h2&gt;
&lt;p&gt;Before enabling HTTPS, verify that DNS resolves the web server correctly.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Configuring Reverse DNS (PTR Records) with BIND9</title>
      <link>https://my-it-blog.netlify.app/posts/reverse-dns/</link>
      <pubDate>Sat, 04 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/reverse-dns/</guid>
      <description>&lt;h1 id=&#34;configuring-reverse-dns-ptr-records-with-bind9&#34;&gt;Configuring Reverse DNS (PTR Records) with BIND9&lt;/h1&gt;
&lt;h2 id=&#34;objective&#34;&gt;Objective&lt;/h2&gt;
&lt;p&gt;Extend the existing private DNS infrastructure by configuring Reverse DNS (PTR records). This enables IP addresses to be resolved back to hostnames, complementing the forward lookup zone created in previous labs.&lt;/p&gt;
&lt;p&gt;By the end of this lab, the DNS server will support both:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Forward lookups (hostname → IP address)&lt;/li&gt;
&lt;li&gt;Reverse lookups (IP address → hostname)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;environment&#34;&gt;Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 DNS Server VM + 1 Web Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;network-topology&#34;&gt;Network Topology&lt;/h2&gt;
&lt;p&gt;&lt;img alt=&#34;dns-topology&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/reverse-dns/dns-topology.png&#34;&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hosting Multiple Websites on One Server Using Nginx</title>
      <link>https://my-it-blog.netlify.app/posts/nginx-virtual-hosts/</link>
      <pubDate>Fri, 03 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/nginx-virtual-hosts/</guid>
      <description>&lt;h1 id=&#34;hosting-multiple-websites-on-one-server-using-nginx&#34;&gt;Hosting Multiple Websites on One Server Using Nginx&lt;/h1&gt;
&lt;h2 id=&#34;objective&#34;&gt;Objective&lt;/h2&gt;
&lt;p&gt;Host multiple websites on a single web server by combining:&lt;/p&gt;
&lt;p&gt;DNS (BIND9)
Nginx Virtual Hosts (Server Blocks)&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;environment&#34;&gt;Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 DNS Server VM + 1 Web Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;network-topology&#34;&gt;Network Topology&lt;/h2&gt;
&lt;p&gt;&lt;img alt=&#34;dns-topology&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/nginx-virtual-hosts/dns_vhost_topology.png&#34;&gt;&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;prerequisites&#34;&gt;Prerequisites&lt;/h2&gt;
&lt;p&gt;This lab builds upon the Private DNS Infrastructure with BIND9 (3-VM Lab). The following components are assumed to already be configured:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;BIND9 installed and running on the DNS server.&lt;/li&gt;
&lt;li&gt;The company.lab DNS zone created and configured.&lt;/li&gt;
&lt;li&gt;The zone file (/etc/bind/db.company.lab) already exists.&lt;/li&gt;
&lt;li&gt;The client is configured to use the internal DNS server (192.168.10.10) via Netplan.&lt;/li&gt;
&lt;li&gt;DNS resolution between the client and the DNS server has been verified.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;In this lab, the existing DNS infrastructure is extended by adding additional DNS records and configuring Nginx virtual hosts to host multiple websites on a single web server.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Private DNS Infrastructure with BIND9</title>
      <link>https://my-it-blog.netlify.app/posts/private-dns/</link>
      <pubDate>Thu, 02 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/private-dns/</guid>
      <description>&lt;h1 id=&#34;private-dns-infrastructure-with-bind9&#34;&gt;Private DNS Infrastructure with BIND9&lt;/h1&gt;
&lt;h2 id=&#34;objective&#34;&gt;Objective&lt;/h2&gt;
&lt;p&gt;Build a private DNS infrastructure using BIND9 where:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;A DNS server resolves names in the company.lab domain.&lt;/li&gt;
&lt;li&gt;A web server hosts a website.&lt;/li&gt;
&lt;li&gt;A client uses the DNS server to locate and access the web server.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;environment&#34;&gt;Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 DNS Server VM + 1 Web Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;network-topology&#34;&gt;Network Topology&lt;/h2&gt;
&lt;p&gt;&lt;img alt=&#34;dns-topology&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/private-dns/dns-topology.png&#34;&gt;&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;phase-1---configure-dns-server&#34;&gt;Phase 1 - Configure DNS Server&lt;/h2&gt;
&lt;h3 id=&#34;step-1---install-bind9-and-verify&#34;&gt;Step 1 - Install BIND9 and verify&lt;/h3&gt;
&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; style=&#34;color:#f8f8f2;background-color:#272822;-moz-tab-size:4;-o-tab-size:4;tab-size:4;-webkit-text-size-adjust:none;&#34;&gt;&lt;code class=&#34;language-bash&#34; data-lang=&#34;bash&#34;&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;sudo apt update
&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;sudo apt install bind9 bind9-utils dnsutils
&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;sudo systemctl status named/bind9
&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;ss -tulnp | grep 192.168.10.10:53
&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;p&gt;&lt;img alt=&#34;bind9-status&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/private-dns/bind9-status.png&#34;&gt;
&lt;img alt=&#34;verify&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/private-dns/verify-bind.png&#34;&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>DNS Lab - Dnsmasq, Client resolver, Caching</title>
      <link>https://my-it-blog.netlify.app/posts/dns-server/</link>
      <pubDate>Tue, 05 May 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/dns-server/</guid>
      <description>&lt;h1 id=&#34;-dns-lab&#34;&gt;🧪 DNS Lab&lt;/h1&gt;
&lt;h2 id=&#34;-objective&#34;&gt;📌 Objective&lt;/h2&gt;
&lt;p&gt;Understand DNS from a systems perpective&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;-environment&#34;&gt;⚙️ Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 DNS Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;-lab-network-topology&#34;&gt;🛠️ Lab Network Topology&lt;/h2&gt;
&lt;h3 id=&#34;-phase-1--direct-dns-no-cache&#34;&gt;🧩 Phase 1 — Direct DNS (No Cache)&lt;/h3&gt;
&lt;p&gt;Client VM -&amp;gt; dnsmasq (192.168.10.10)&lt;/p&gt;
&lt;p&gt;Used for:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Break #1 (Wrong DNS Server)&lt;/li&gt;
&lt;li&gt;Break #2 (Wrong DNS Record)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h3 id=&#34;-phase-2--direct-dns-no-cache&#34;&gt;🧩 Phase 2 — Direct DNS (No Cache)&lt;/h3&gt;
&lt;p&gt;Clint VM -&amp;gt; systemd-resolved (127.0.0.53) [CACHE] -&amp;gt; dnsmasq (192.168.10.10) [DNS SERVER]&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
