[dns-operations] DNS Traffic Archive Protocol

Ondřej Surý ondrej.sury at nic.cz
Tue Nov 30 09:56:01 UTC 2010


we are building a DNS archivation protocol to reduce the size of raw 
dnscap/pcap packets.  Since we are going to opensource that, I wonder 
whether there is an interest for defining the properties of such 
protocol, ie. what to store and what not, etc.

We will then use this to store all the traffic on the authoritative 
servers for .CZ on a long term basic (possibly never delete the data).

The idea is that we could possibly feed this to DSC if there is a need 
for a new aggregated statistics.  Also a tool to convert the 
"compressed" data to pcap format so it can be fed to other tools will be 

I'll prepare short summary of what we have to the date if there is an 
interest to discuss it further.

  Ondřej Surý
  vedoucí výzkumu/Head of R&D department
  CZ.NIC, z.s.p.o.    --    Laboratoře CZ.NIC
  Americka 23, 120 00 Praha 2, Czech Republic
  mailto:ondrej.sury at nic.cz    http://nic.cz/
  tel:+420.222745110       fax:+420.222745112

More information about the dns-operations mailing list