About "网域”
About "网域”
The rapid development of the internet and mobile internet has raised higher requirements for the security, reliability, and stability of domain name resolution services. In 2018, the China Internet Network Information Center (CNNIC) launched its independently developed "Domain" series of products in Beijing, establishing for the first time a comprehensive, multi-level domain name service and security protection product system in China. In 2020, against the backdrop of "new infrastructure," domain name identification services encountered significant strategic opportunities, while also presenting new challenges in areas such as performance and security.
The "网域" product series encompasses a wide range of solutions, including domain name resolution and monitoring protection etc. The 3rd version of the "Domain" Resolution Series achieved numerous technical breakthroughs in DNS edge resolution, multi-identification resolution, and DNS-born defense. The 3rd version of the "Domain" Monitoring and Protection Series has achieved high performance, large capacity, and fine-grained professional DNS monitoring protection.
I. "网域" Resolution Series
The "网域" Resolution Series aims to address the problems found in traditional resolution software, such as low performance, difficult maintenance, and numerous vulnerabilities. The product line includes DNS authoritative resolution software and DNS full-range resolution software, each designed to meet the needs of the top-level domain market and the enterprise market.
High-performance DNS authoritative resolution
High-performance DNS recursive caching
High-precision DNS intelligent resolution
Multi-scenario DNS edge resolution
Comprehensive DNS-born defense
One-stop multi-identification resolution
DNS authoritative resolution software V3
DNS Authoritative Resolution Software meets the authoritative resolution service needs of top-level domains. It focuses on high-performance, high-security domain name resolution services, integrating features such as authoritative resolution, security protection, and management statistics. The software is characterized by high concurrency, high throughput, low latency, and high security.Lightweight DNS protocol stack - Enhances system service efficiency.
High-performance DNS authoritative resolution engine - Reduces operational and maintenance costs.
High-precision DNS intelligent resolution engine - Supports fine-grained network service scheduling.
DNS authoritative-born defense - Mitigates unknown or uncertain security risks.
DNS full-range resolution software V3
“网域” DNS Full-Range Resolution Software targets the government and enterprise markets, meeting their differentiated DNS domain resolution needs. It inherits the main features of the DNS authoritative resolution software and expands with additional capabilities such as recursive resolution and multi-identification resolution, offering technical solutions applicable to various application scenarios.
High-performance DNS recursive caching - Reduces operational and maintenance costs.
Standardized DNS encryption interface - Protects user privacy.
DNS recursive-born defense - Mitigates unknown or uncertain security risks.
DNS edge resolution - Meets the needs of diverse application scenarios.
Multi-identification resolution - Enables one-stop resolution for various network identifiers.
II. “网域” Monitoring and Protection Series
The "网域" Monitoring and Protection Series is designed to quickly detect various types of network service attacks targeting domain name services, enhancing security monitoring and protection capabilities. The product series includes DNS traffic monitoring and analysis software and DNS security engines, providing real-time DNS message monitoring and attack alert functions, as well as traffic cleaning and protection reinforcement for various identification services.
High performance, dual 10G DNS request line-speed protection
Multi-dimensional, rich monitoring and protection features
Low latency, hardware microsecond-level data processing engine
Easily scalable, supporting distributed array deployment
Multi-identification, monitoring and protection for various network identifiers
Easy to adapt, standard size, low power consumption
DNS traffic monitoring and analysis software V3
Based on the characteristics of the DNS protocol and traffic, the "Domain" DNS Traffic Monitoring and Analysis Software employs high-performance packet capture technology and advanced real-time DNS data analysis techniques to achieve real-time DNS traffic statistics and analysis. This software supports the monitoring and statistics of traffic from various identification services such as Handle, EPC, OID, and privacy protection protocols, helping users to develop security protection strategies scientifically, accurately, and in a timely manner.
High-performance real-time traffic statistics for comprehensive monitoring of network access traffic.
Adopt professional DNS attack monitoring to promptly detect abnormal network traffic.
Utilize multi-dimensional DNS traffic feature analysis to help users deeply mine data value.
Full adaptation and support for domestic servers, significantly reducing operational costs and deployment complexity.
DNS security engine V3
The "网域" DNS security engine, based on dedicated security protection hardware, implements efficient hardware-based algorithms for high-speed parsing, analysis, and identification of packets, forming a series of security strategies. It achieves cleaning and rate-limiting at the network, transport, and application layers, flexibly defending against various types of DNS service attacks. The DNS traffic redirection feature allows flexible resource scheduling between nodes, effectively supporting multi-node application layer traffic balancing and collaborative defense.
With hardware-accelerated line-speed traffic processing, it provides gigabit and 10-gigabit level attack traffic cleaning services.
Adopting multiple network attack recognition algorithms to effectively identify attack traffic characteristics.
Constructing new statistical and traffic cleaning algorithms to accurately separate and block attack traffic.
Fine-grained professional dynamic resource scheduling to improve the reliability of DNS services across the network.
