DNS, DHCP, and Name Resolution Questions

How names and addresses are served and kept working on a network. DNS: resolution flow (stub, recursive, authoritative, root/TLD referrals), host-side resolver configuration and why one machine or process resolves differently from another, record types and their pitfalls (including apex aliasing, MX, SRV and CAA use), zones, delegation and glue, caching, TTL and negative caching, split-horizon and private zones, reverse DNS, zone transfers (AXFR/IXFR, TSIG), DNSSEC and key rollover, resolver and authoritative fleet design, forwarding versus running recursion, encrypted DNS (DoH/DoT), truncation, TCP fallback and EDNS, DNS-layer attacks (cache poisoning, amplification, spoofed-source floods), DNS health from the user's point of view, and DNS changes, mail and registrar migrations and outages. DHCP: address assignment and leases, scopes and sizing, reservations, relay across VLANs including relay agent information (option 82), redundancy and failover, and rogue or exhausted-scope failures. Includes diagnosing resolution failures that masquerade as wider outages. Excludes the layered network fault-isolation method and general packet capture, Active Directory-integrated DNS on domain controllers, DNS-based service registries for microservices, load-balancing algorithm design and global traffic steering, incident-command process and SLO or error-budget design, and generic scripting or infrastructure-as-code tooling.

HardSystem Design
123 practiced

Design the authoritative DNS for a SaaS product serving 100M queries a day, with sub-50ms global latency and 99.99% availability. What choices do you make and what trade-offs do you accept?

HardSystem Design
70 practiced

Design the recursive resolver service for an enterprise with millions of internal clients. What would you decide about placement, redundancy, cache sizing, security and privacy, and how would you know it is healthy?

HardTechnical
82 practiced

Your team is deciding between forwarding all queries to a cloud provider's resolver and running full recursive resolvers in-house. How do you weigh them?

HardSystem Design
62 practiced

Design name resolution for an environment with several cloud accounts, Kubernetes clusters and an on-premises network, where internal services need private names and the same names must resolve differently outside. How do queries flow in each direction, and what would you do to avoid inconsistent answers?

That is every published DNS, DHCP, and Name Resolution question for Cloud Architect so far. Browse the other topics in this category, or practice this one interactively.