Domain Name Service
FRXUV#XUHFFQUVIU
DNS
❍ ❍
&UpDWLRQ%HUQDUG7X\ 0RGLILFDWLRQV %HUQDUG7X\ 3/HFD
Page 1
Plan
❍
*pQpUDOLWpV
❍
'RPDLQ1DPH6\VWHPODWKpRULH
❍
HWODSUDWLTXH
Nommage des Ressources Réseau ❍
/HVpTXLSHPHQWVFRPPXQLTXHQWJUkFHjOHXUDGUHVVH,3
❍
6HXOHVOHVDSSOLFDWLRQVXWLOLVHQWOHVQRPVGHVpTXLSHPHQWV ² SRXUFHUWDLQHVRQSHXWXWLOLVHUOHVDGUHVVHVIWSWHOQHW ² SRXUG DXWUHVOHVQRPVVRQWLQGLVSHQVDEOHVZZZ
❍
$XQHDGUHVVH,3SHXWFRUUHVSRQGUHXQRXSOXVLHXUVQRPVDOLDV
❍
8QQRPGRLWrWUHXQLTXHDXPRQGH
Page 2
Les Correspondances Nom - Adresse IP
❍
❍
❍
)LFKLHUHWFKRVWV ILFKLHU$6&,, PLVHjMRXUPDQXHOOH JHVWLRQPDQXHOOHGHVUHVVRXUFHVQRQORFDOHV 1,6
DNS : généralités (1) ❍
5)&HW
❍
/HV2EMHFWLIV (VSDFHGH1RPVPRQGLDOFRKpUHQWLQGpSHQGDQWGHV SURWRFROHVHWGXV\VWqPHGHFRPPXQLFDWLRQVRXVMDFHQWV *HVWLRQGpFHQWUDOLVpHGHVLQIRUPDWLRQVGHODEDVHGHGRQQpHV JOREDOH 8VDJHJpQpUDOLQGpSHQGDQWGHVW\SHVG DSSOLFDWLRQV HWGXW\SHGHPDFKLQHVGXPLFURDXPDLQIUDPH
Page 3
DNS : généralités (2) ❍
$YDQWDJHV *HVWLRQGpFHQWUDOLVpH ² DGPLQLVWUDWLRQGHVVHXOHVUHVVRXUFHVORFDOHV ² PDLVDFFqVjWRXWHVOHVUHVVRXUFHVGHO ,QWHUQHW 6\VWqPHGHFDFKH PpPRULVHUOHVUpVROXWLRQVSUpFpGHQWHV JDLQGHWHPSV SDVGHVXUFKDUJHLQXWLOHGXUpVHDX '16V\VWqPHODUJHPHQWUpSDQGXELHQU{GpHWVWDQGDUG
DNS : généralités (3) ❍
,QFRQYpQLHQWV 3UREOqPHGHFHUWLILFDWLRQGHO LQIRUPDWLRQ ² OHVGRQQpHVFKDQJHQWOHQWHPHQW OHVFRXSOHVQRPV#,3 ² SULRULWpjO DFFqVjO LQIRUPDWLRQVXUOHVPLVHVjMRXUHWOD JDUDQWLHGHFRKpUHQFH
Page 4
DNS : la théorie (1) ❍
&RQVWLWXDQWVGX'16 / (VSDFHGHV1RPVGHGRPDLQHVHWOHVLQIRUPDWLRQV DIIpUHQWHV5HVRXUFH5HFRUGVRX55 /HV6HUYHXUVGH1RPV /HV5HVROYHUV
DNS : la théorie (2) ❍ ❍
❍
❍
/ HVSDFHGHV1RPVHVWDUERUHVFHQW8)6 ,OHVWGLYLVpHQQLYHDX[GHGRPDLQHV 5RRW 7RS/HYHO'RPDLQFRPPLOQHWHGXIUXNGH 6HFRQGDU\/HYHOGRPDLQ $FKDTXH1RHXGRX)HXLOOHGHO DUERUHVFHQFH HVWDVVRFLpXQHQVHPEOHGH5HVVRXUFHV HWXQ1RP FDUDFWqUHVPD[LPXP ² ([('8 -866,(8 )5 &156 /HQRPGHGRPDLQHG XQQRHXG VXLWHGHVQRPVGHGRPDLQHVHQUHPRQWDQWGXQRHXGYHUVODUDFLQH 5RRW
OHVQRPVGHGRPDLQHGHFHWWHVXLWHVRQWVpSDUpVSDUXQ ² ([HGX
-XVVLHXIU
Page 5
IU
FQUVIU
DNS : la théorie (3) ❍
❍ ❍
❍
/HQRPPDJHSHXWDXVVLrWUHUHODWLI FHODVXSSRVHTXHO 25,*,1(VRLWFRQQXH ([VKLYDMXVVLHX HVWXQQRPUHODWLIDXGXGRPDLQH)5 ² RQGLWTXH)5HVWO RULJLQHFRXUDQWH XQQRPGHGRPDLQHUHODWLIRXDEVROX HVWOLPLWpjFDUDFWqUHV XQGRPDLQHHVWLGHQWLILpSDUXQ1RPGHGRPDLQH F HVWODVRXVDUERUHVFHQFHTXLDSRXURULJLQHFHQRPGHGRPDLQH 8QGRPDLQHLQFOXVGDQVXQDXWUHHVWXQVRXVGRPDLQH ([SUHSDLPLWHGXHVWVRXVGRPDLQHGH ² DLPLWHGX ² PLWHGX ² HGX ²
DNS : la théorie (4) ❍
4XHO1RPGH'RPDLQHFKRLVLU" 5)& FDUDFWqUHVPD[ FRQVHLOOpFDUDFWqUHVPD[ $=D] GRLWFRPPHQFHUSDUXQHOHWWUH
❍
OHJpUDQWGXGRPDLQHHQJOREDQWOHY{WUHGRLWDVVXUHUO XQLFLWpGHV QRPVGHGRPDLQH O 85(&SRXUXQVRXVGRPDLQHGH&156)5 OH$)1,&SRXUXQVRXVGRPDLQHGH)5
Page 6
L’Espace des Noms ""
(Root)
Autres Pays
USA .com .edu
.mit
lcs
.mil .gov
.ddn
nic
.arpa .org
.net
.nordu
nic
.fr .uk .de .nl .au .jp
.edf
.urec
.der
.vjf
isis
compta
•••
.ac
soleil
DNS : administration (1) ❍
/ DGPLQLVWUDWLRQGHVQRPVGHGRPDLQHHVWKLpUDUFKLVpH /H1,&1HWZRUN,QIRUPDWLRQ&HQWHU DX[(WDWV8QLVHVW UHVSRQVDEOHGHODFFRUGLQDWLRQPRQGLDOH$8725,7(
❍
HWGpFHQWUDOLVpH /H1,&DGRQQpGpOpJDWLRQj5,3(1&&SRXUODJHVWLRQGHV 1RPVGH'RPDLQHHQ(XURSH ² 5,3(1&&DDXWRULWpSRXUO (XURSH 5,3(1&&DGRQQpGpOpJDWLRQDO¬·$)1,&SRXUODJHVWLRQGHV QRPVGHGRPDLQHHQ)UDQFH ² OH$)1,&$VVRFLDWLRQ)UDQoDLVHSRXUOHQRPPDJH LQWHUQHWHQFRRSpUDWLRQKWWSZZZQLFIU DDXWRULWpHQ )UDQFH
Page 7
DNS : administration (2) ❍
/¬·$)1,&HQUHJLVWUHWRXVOHVQRPVGHVRXVGRPDLQHGXGRPDLQH )5 DYHFXQJpUDQWSRXUFKDTXHGRPDLQHGpOpJDWLRQG DXWRULWp ² HGIIUHVWJpUpSDUOD'LUHFWLRQGHO (') ² XUHFIUHWFQUVIUVRQWJpUpVSDUO 85(& ²
❍
/HJpUDQWGXGRPDLQH;IUHVWUHVSRQVDEOH GHODGpOpJDWLRQGHVQRPVGHGRPDLQHVGHODIRUPH<;IU GHODGpVLJQDWLRQG XQDGPLQLVWUDWHXUGXGRPDLQH<;IU
DNS : administration (3) ❍
,OIDXWFRQWDFWHUO¬·$)1,&KWWSZZZQLFIU 3RXUIDLUHHQUHJLVWUHUXQQRPGHGRPDLQHVRXVIU 3RXUIDLUHRXYULUOD]RQHFRUUHVSRQGDQWH
❍
&RQWDFWHUOH*,35HQDWHUGQVVYS#UHQDWHUIURXZZZUHQDWHUIU SRXUOHVHQWLWpVUHOHYDQWGHODFRPPXQDXWp(QVHLJQHPHQW 5HFKHUFKH
❍
,OIDXWFRQWDFWHUO 85(&GQVPDVWHU#XUHFFQUVIURX ZZZXUHFFQUVIU 3RXUIDLUHHQUHJLVWUHUXQQRPGHGRPDLQHVRXVFQUVIU 3RXUIDLUHRXYULUOD]RQH;FQUVIU
Page 8
DNS : la théorie (6) ❍
,OQ \DSDVGHFRUUHVSRQGDQFHV\VWpPDWLTXHHQWUHXQQRPGH GRPDLQHHWXQHDGUHVVHGHUpVHDX,3 /HQRPHVWXQHQRWLRQDGPLQLVWUDWLYH /HGRPDLQHFQUVGLUIUUHJURXSHVLWHVj3DULVHWVLWHj 7RXORXVH
❍ ❍
,O\DXQHKLpUDUFKLHGHVQRPVGHGRPDLQHV FRQWUDLUHPHQWDX[DGUHVVHVGHUpVHDX[
DNS : la théorie (7) / HVSDFHGHV1RPVHWOHVUHTXrWHVLQYHUVHV ❍
UpDOLVHUODFRUUHVSRQGDQFH#,3!QRP QRPGHPDFKLQHRXGHUpVHDX
❍
OHSVHXGRGRPDLQHLQDGGUDUSDHWGHVSRLQWHXUV UHSUpVHQWDWLRQGHO HVSDFHGHVDGUHVVHVVRXVIRUPHGH GRPDLQHV H[HW
Page 9
Le pseudo domaine in-addr.arpa. $USD
)U
,QDGGU
-XVVLHX
8UHF
6KLYD
7HWK\V
PTR
DNS : la théorie (8) /HV5HVRXUFH5HFRUGV55V ❍
8QQRPGH'RPDLQHLGHQWLILHXQQRHXGGHO DUEUHGHV1RPV
❍
QRHXG !XQHQVHPEOHG LQIRUPDWLRQV5HVVRXUFHV
❍
&HWHQVHPEOHHVWGpFULWSDUGHV55V
❍
,OSHXW\DYRLUSOXVLHXUV55V OHXURUGUHHVWLQGLIIpUHQW
Page 10
Sructure d’un RR
3URSULpWDLUH
77/
&/$66(
1RPGH'RPDLQH LPSOLFLWH
1EHQWLHU VHFRQGHV
,1 &+
GXUpHGHYLH GDQVOHFDFKH
7<3(
5'$7$ I7<3(&/$66(
$ 375 62$ 16 0; &1$0( +,1)2 :.6
#,3ELWV 1RPB'RP 1RPBKRVW 1RPBKRVW 1RPBKRVW 7H[WH 6HUYLFHV
DNS : la théorie (10) ❍
([HPSOHVGH5HVRXUFH5HFRUGV 3URSULpWDLUH
&ODVVH 7\SH
,6,('8
,1
0;
$ $
9(1(5$,6,('8
Page 11
5'$7$
9(1(5$,6,('8
Alias et noms canoniques
3URSULpWDLUH
&ODVVH7\SH
5'$7$
/DIRULDLESIU,1 $ .OHLRLESIU &1$0(
/DIRULDLESIU
WHWK\VXUHFIU QVXUHFIU IWSXUHFIU
WHWK\VXUHFIU WHWK\VXUHFIU
$ &1$0( &1$0(
DNS : la théorie (12) $OLDVHWQRPVFDQRQLTXHV ❍
8QQRPGH'RPDLQHQHGRLWMDPDLVSRLQWHUVXUXQDOLDVPDLVVXUXQ 1RPFDQRQLTXH
❍
([ LQDGGUDUSD,1375
Page 12
/DIRULDLESIU
DNS : la théorie (13) ❍
3DUDPqWUHVGX62$5)& ¬ ■ Serial ■ Refresh ■ Retry ■ Expire ■ Minimum
❍
No de version Intervalle entre 2 polling des serveurs 2daires Intervalle si polling infructueux Durée de l'autorité sur la zone Durée de vie (TTL) des RR dans un cache
([HPSOH
9HUVLRQ
5HIUHVKK
5HWU\K
([SLUHM
0LQLPXPM
DNS : Les ZONES (1)
❍
(VSDFHGHV1RPVGH'RPDLQHHVWGpFRXSpHQ=21(6 DGPLQLVWUDWLYHV
❍
8QH=RQHHVWVRXVO DXWRULWpG XQ1DPH6HUYHU16
❍
8Q1DPH6HUYHUSHXWDYRLUDXWRULWpVXUSOXVLHXUV=RQHV
Page 13
DNS : les ZONES (2) 'pILQLWLRQV ❍ XQH=21(HVWGpOLPLWpHSDUOHVSDUWLHVFRQWLJHVGHO DUEUHGHV QRPVGHGRPDLQHVXUOHVTXHOOHVXQ16SRVVqGHXQHLQIRUPDWLRQ FRPSOqWH ❍
F HVWOHVRXVDUEUHJpUpSDUXQHHQWLWpDGPLQLVWUDWLYHSDUWLFXOLqUH / DXWRULWpVXUFHVRXVDUEUHFHWWH=RQH OXLDpWpGpOpJXpH
❍
ODGpOpJDWLRQHVWWRWDOH SHXWFKDQJHUO RUJDQLVDWLRQGXVRXVDUEUHGRQWLODODFKDUJH VDQVSUpDYLV SHXWGpOpJXHUXQHSDUWLHGHOD=RQHjXQHDXWUHHQWLWpVRXV ]RQH
DNS : les ZONES (3)
❍
/HQRPGHOD=RQH 1RPGXQRHXGVRPPLWDO QRHXGVRPPLWDO QRHXGOHSOXVpOHYpGHODVRXVDUERUHVFHQFH
❍
FRXSXUHHQWUH]RQHV Q LPSRUWHRHQWUHQRHXGVDGMDFHQWVGHO DUEUH WRXVOHVQRHXGVG XQH]RQHGRLYHQWrWUHUHOLpVHQWUHHX[ !IUDJPHQWDWLRQGHODEDVHGHGRQQpHJpQpUDOH !SOXVJUDQGHIDFLOLWpG DGPLQLVWUDWLRQ !PDLV
Page 14
DNS : les ZONES (4) =RQH5RRW
=RQH)5 )5 =RQH,15,$
=RQH,%3
,15,$
&RUWRQ/D\RQ
=RQH85(& ,%3
(FROH'RF0$6,/DIRULD
85(&
7HWK\V 3KRHEH
-XSLWHU +HUPHV.OHLR
DNS : les ZONES (5) &UpDWLRQG XQHQRXYHOOH=RQH5)& ❍
REWHQLUODGpOpJDWLRQGHFHWWHQRXYHOOH]RQH DXSUqVGXJpUDQWGHOD]RQHPqUH ]RQHPqUH]RQHTXLLQFOXWODQRXYHOOH]RQHHUQLYHDX
❍
2IIULUXQVHUYLFHGHQRPVUHGRQGDQW EDFNXSpORLJQp
❍
$MRXWHUOHVLQIRUPDWLRQVDGKRFGDQVOD]RQHPqUH JOXHGDWD
Page 15
DNS : Les Serveurs de Noms (1) ❍
1DPH6HUYHUV16
❍
2ULJLQH%,1'%HUNOH\,QWHUQHW1DPH'DHPRQ
❍
%DVpVXUOHPRGHFOLHQWVHUYHXU 8WLOLVHXQHFRQQH[LRQ7&3SRUWSRXUOHVHUYHXU 8QL[LQ1DPHG:LQGRZV1706QDPHVHUYHU ² UpSRQGDX[UHTXrWHVGHVFOLHQWV ² UpVRXGOHVFRUUHVSRQGDQFHV 1RP!#,3 #,3!1RP
DNS : Les Serveurs de Noms (2) ❍
)RQFWLRQV 5pSRQGUHDX[UHTXrWHVUHoXHVFRQFHUQDQWGHVUHVVRXUFHVGH VDVHV ]RQHV (YHQWXHOOHPHQWUpSRQGUHjGHVUHTXrWHVFRQFHUQDQWG DXWUHV ]RQHVFDFKHGGDWD
❍
,OFRQQDLW OHV#,3HWOHVQRPVGHVUHVVRXUFHVGHVD]RQH OHV#,3GHV16GHV]RQHVLQFOXVHVVRXV]RQHV OHV#,3GHV16GHOD]RQH5RRW TXLFRQQDLVVHQWO #,3GHV16GHVVRXV]RQHVDGMDFHQWHV ('81(7&20)58.1/
Page 16
DNS : Les Serveurs de Noms (3) 5pVROXWLRQVGHVUHTXrWHV ❍
PRGHLWpUDWLIPLQLPDOHWREOLJDWRLUH !5pSRQVH ^'DWD_(UUHXU_3RLQWHXU`
❍
PRGHUpFXUVLIIDFXOWDWLISUpFLVpSDUOHIODJ5$5' !5pSRQVH ^'DWD_(UUHXU`
DNS : Les Serveurs de Noms (4) ❍
/RUVTX XQVHUYHXUUHoRLWXQHUHTXrWH LOUpSRQGDXFOLHQWVL ² LODO LQIRUPDWLRQGDQVVHVWDEOHV ² RXGDQVVRQFDFKH VLQRQLOFRQVWUXLWXQHGHV UHTXrWHVSRXUOHV16VXFFHVVLIVHQ FRPPHQFDQWSDUFHX[GHOD]RQH5RRW HW ² VRLWWUDQVPHWODUpSRQVHjO DXWHXUGHODUHTXrWHPRGH UpFXUVLI ² VRLWWUDQVPHWO #,3GX16jLQWHUURJHU ² O DXWHXUGHODUHTXrWHGHYUDLQWHUURJHUFHQRXYHDXVHUYHXU PRGHLWpUDWLI
❍
6XUFKDTXHPDFKLQHXQFDFKHPpPRULVHWRXWHVOHVUpVROXWLRQV SUpFpGHQWHV
Page 17
DNS : les serveurs de noms (5) ❍
5HGRQGDQFHGHVVHUYHXUV 8QVHUYHXUDSSHOpSULPDLUH ² %DVHG LQIRUPDWLRQVG XQGRPDLQH ² &HWWHEDVHHVWPLVHjMRXUPDQXHOOHPHQW ² VHXOHDXWRULWpVXUOHVLQIRUPDWLRQVGXGRPDLQH 'HVVHUYHXUVVHFRQGDLUHV ² FRSLHDYHFPLVHjMRXUDXWRPDWLTXHGHODEDVH G LQIRUPDWLRQVGXVHUYHXUSULPDLUH ² VROOLFLWDWLRQjLQWHUYDOOHUpJXOLHUGXVHUYHXUSULPDLUH ² VWRFNHQWGDQVOHXUFDFKH
DNS : les serveurs de noms (6) ❍
5HPDUTXHV ² ,OIDXWELHQFKRLVLUVRQVHUYHXUSULPDLUHHWVHVVHUYHXUV VHFRQGDLUHV ² 3HQVHUDXHQILQGHVQRPVTXLGpVLJQHQWXQGRPDLQH DEVROX ² $WWHQWLRQjPRGLILHUOHQXPpURGHYHUVLRQGDQVOHVWDEOHVj FKDTXHPLVHjMRXU
Page 18
Les Requêtes et les réponses (1) ❍
OHVIRUPDWVVRQWVWDQGDUGLVpV 8'33RUW RFWHWVPD[LPXP (17(7(
6
6
6
6
RFWHWV (QWrWH !2SFRGHW\SHGHUHTXrWH 64QDPH4W\SH4FODVV 655VUpSRQGDQWjODUHTXrWHUHoXH 655VSRLQWDQWYHUVG DXWUHV16 655VHQSULPH
DNS : Les Requêtes (2) ([HPSOH 5HTXrWH ,%3)50;" ❍
6 4QDPH ,%3)5 4W\SH 0; 4FODVV ,1
❍
66HW6 YLGHV
Page 19
4QDPH 1RPFDQRQLTXH 4W\SH $3750;62$ 4FODVV ,1&+
DNS : Les Requêtes (3) 5pSRQVH ❍ 6 GUHTXrWH ❍
6 ,%3)5
0;
❍
6 YLGH
❍
6 3DVFDOLESIU
3DVFDOLESIU
$
DNS : Les Requêtes (4) 5HPDUTXH 3RXUODUpVROXWLRQ#,3!1RPGH0DFKLQHRQQ XWLOLVHSDVXQ IRUPDWGHUHTXrWHLQYHUVH PDLVOHSVHXGRGRPDLQH,1$''5$53$5)&
Page 20
DNS : Les "Resolvers" (1) ❍
❍
)RQFWLRQV &RUUHVSRQGDQFH1RP!#,3 !55VGHW\SH$ &RUUHVSRQGDQFH#,3!1RP !55VGHW\SH375 #,3 [\]W !UHTXrWHW]\[,1$''5$53$ 5HFKHUFKHGHWRXWHLQIRUPDWLRQGDQVODEDVHGHGRQQpHV GHO HVSDFHGHV1RPV ² XWLOLVDWLRQGXFDFKH 2EMHFWLIV UpGXLUHOHVGpODLVHWODFKDUJHGXUpVHDX UpGXLUHOHWUDYDLOGHV16
DNS : Les "Resolvers" (2) ❍
/H5HVROYHUHVWXQHLQWHUIDFH
16
$SSOLFDWLRQV
5(62/9(5
3DUWLH/2&$/(
16 3DUWLH',67$17(
Page 21
DNS : Mise en Oeuvre (1) /HVW\SHVGH6HUYHXUVGH1RPV ❍
❍
❍
❍
❍
3DVGHVHUYHXUGXWRXWPDLVXQ5HVROYHU SDVGHUpVROXWLRQGHVQRPVGHVUHVVRXUFHVORFDOHV UpVROXWLRQGHVQRPVGHVUHVVRXUFHVGLVWDQWHV 6HUYHXUVHFRQGDLUH O DGPLQLVWUDWLRQGHVUHVVRXUFHVORFDOHVHVWDVVXUpHSDUXQWLHUV 6HUYHXUSULPDLUH DGPLQLVWUDWLRQGHVUHVVRXUFHVORFDOHV DXWRULWpVXUFHVLQIRUPDWLRQV 6HUYHXUFDFKH PpPRULVHOHVUHTXrWHVSUpFpGHQWHV DXFXQHWDEOHORFDOH 6HUYHXUIRUZDUGLQJ HQULFKLOHFDFKHG XQRXSOXVLHXUV DXWUHV 16
DNS : Mise en Oeuvre (2) /HV)LFKLHUVjFRQILJXUHU
❍
HWFQDPHGERRWYHUVLRQELQG RXHWFQDPHGFRQIYHUVLRQ%LQG!
❍
HWFUHVROYFRQI
❍
5pSHUWRLUHURRWQV 5pSHUWRLUHUHVRXUFHV ❍ 5pSHUWRLUHUHYHUVH ❍ 5pSHUWRLUHORFDOKRVW ❍ ❍
Page 22
5pSHUWRLUHGpILQL GDQVHWFQDPHGERRW
DNS : Mise en Oeuvre (3) 3RXUWHVWHUXQ16 QVORRNXS ² QVORRNXSUHVVRXUFH ² QVORRNXS !" ² QVORRNXSW\SH P[UHVVRXUFH KRVWV
Page 23