Home LAB DNS - Technitium
My Home LAB has been a core part of my career for the last 25 years and during that time, has evolved and changed as new technologies came along. Having had Microsoft Windows Server installed as the core part of my LAB throughout that, I have always ended up running DNS as part of my Active Directory Domain. This all changed when, attempting to install a PKI infrastructure (that wasn't Microsoft) I discovered that CAA records weren't a simple implementation.
After numerous hours searching (and yes, using AI) I did eventually manage to implement it, however, being the techy I am I wasn't satisfied with this and so, I decided to take the plunge and implement an entirely new DNS infrastructure within my Home LAB.
I'm a big fan of Linux, but with all the will in the world I'm no expert on the command line so one of my core requirements for any new DNS Server was that it had at least some form of GUI. I tried many different ones, but I came along Technitium DNS and the more I read in to it the more I liked the sound of it.
What is Technitium DNS?
Why it's great for a Home LAB environment
What are the key features of Technitium DNS?
- Authoritative DNS server - server your own internal domains such as lab.example.local OR if you're feeling really brave, you can set it to be authoratative for external DNS resolution (i.e. .com/.net etc) but you need to be confident that your security and monitoring are in place as you'll need to open up ports on your firewall or router to allow this.
- Recursive DNS server - Allows you to query Technitium for DNS resolution, for example if your clients want to resolve www.google.com, Technitium will act as the resolver for you as long as you've configured everything correctly during installation.
- DNS blocking - Technitium can use widely recognised DNS blacklists to act as a web filter, seamlessly filtering out Adverts, Malware, Adult Content and many others. It has built in filtering lists but you can also add custom ones.
- DHCP Server - Technitium can also act as your local DHCP server and issue IP addresses for your clients and is also VLAN aware so you can have different scopes for different VLANs.
- Monitoring/Reporting - By far one of the best features is it's built in query monitoring and report tools. Graphs show the number of DNS queries, top source clients, top destinations and top blocked amongst a bunch of others. In addition, you can query to the granular detail all the logs, something that frankly, isn't so straight forward via AD/DNS.
Comments
Post a Comment