SolidDNS 4.1.614 64-bit VMWare Server/Player Pre-installed Image
What’s New in SolidDNS 4.1.614 64-bit
S-Shield Service
This service is an intrusion detection feature that sends alerts when a captured packet matches a
rule. This gives you a collection of information from someone who is trying to attack your SolidDNS™
server.
Netflow Service
This feature allows you to import SolidDNS™ packets into a traffic monitoring software to detect
anomalous or abnormal activity directed against the appliance.
Diskmon Service
This is a new addition that detects RAID or hard drive failures and sends notification to specified
recipients.
Watcher Service
You can now set threshold limits for CPU, Memory, System, Data, or Application usage and receive
email alerts when these figures are reached.
Journal of Dynamic Updates
Added on the Config tab of domains and networks, this feature records all changes introduced via
dynamic updates.
IP Aliasing and Static Routes
These new features allow you to add multiple IPs to the network interface cards of the appliance and
define static routes for traffic that you want to divert from the default gateway.
BIND Blackhole Support
SolidDNS™ now supports "blackhole" statements to ignore fake queries coming from specified IP
address or network.
Domain-Specific Clear Cache
This feature gives you the option to flush the cache of a specific domain. You can also download the
cache when it reaches 3MB.
Support for dot "." Domain
This feature is an innovative approach to implement NXDomain, especially useful to enterprises that
want to limit recursive queries to specific domains or a "whitelist". Enforcing a whitelist is notoriously
difficult because by default, name servers are designed to query the DNS hierarchy from the root servers down to the authoritative name server. In SolidDNS™, the dot "." domain traps queries to the root and sends an NXDomain response.
New API Methods
- sdns.dns.zone.signzone
This method allows the administrator to sign a domain or network. This presupposes that the
zone signing feature of the appliance has been enabled. - sdns.dns.domain.addforwarddomain
This method allows an administrator to add a Forward domain. - sdns.dns.getimportstatus
This method allows an administrator importing domains and networks to see the status of the
operation. - sdns.dns.zone.querydnskey
This method allows the administrator of a parent zone to perform DIG in order to get the DNS
Keys of a delegated zone for purposes of calculating its DS RRset. - sdns.dns.getds
This method allows the administrator of a parent zone to get the DS RRset of a delegated (child)
zone. - sdns.dns.zone.addds
This method allows the administrator of a parent zone to add the DS RRset of its delegated zone. - sdns.dns.deleteds
This method allows the administrator to delete the DS RRset of a delegated zone.
Backup Feature
You can now automate the backup procedure and schedule it. In addition, you have the option to
copy the local backup to a remote server and, if you like, delete the local copy after such transfer.
Logs
The System Log page has additional tabs for DHCPv4, DHCPv6, DNS, and Other logs, which were
added to help administrators sift through the tons of records the appliance keeps.
Wildcard CNAME
The appliance now supports the wildcard asterisk "*" for CNAME. This allows the appliance to
resolve even misspelled queries.
DNSSEC
The appliance now supports more algorithms for Trusted Keys and DS RRsets.
BIND Engine
This version uses BIND 9.7.0-p2

