10.3. FastDNS

10.3.1. Overview

  • Fast DNS can use Fast DNS services provided by Akamai Technologies, Inc., and we will provide DNS services targeting outside.

  • We secure the world’s highest level of availability and provide a high-speed DNS even in the middle of the largest-scale DDoS attacks.

  • As we provide, instead of our client, the specialized knowledge of DNS servers and necessary architecture, operation, security actions by means of this menu, our client can use the DNS server with relative use.

  • This makes it easy to set up your own domain for resources such as bare metal server and virtual server of this service and make it public to the outside.

  • Combining with Global Server Load Balance (Global Traffic Management) etc. helps build up a large-scale system with higher availability.


Image of general Fast DNS services

overall

10.3.1.1. Features

Following are the features of this menu:

1. Providing a large-scale distributed platform as a stable base.

Use of platforms distributed in 26 countries and over 195 sites helps to secure availability withstanding massive DDoS attacks.
Even if some of the DNS servers that customers are using are attacked, at least one DNS server can be immune from such attack.
When the DNS server goes down, the properly functioning servers can respond.

2. Reducing the vulnerability risk by means of originally developed software

As originally developed software is applied to DNS servers, a secure environment is available where vulnerability information that general BIND has as DNS software is not applicable as is.

3. Creation/edition/deletion of zones and those of record sets in zones can be done with relative ease as DNS services

Creation/edition/deletion of zones and record sets can be set up with relative ease from the Akamai portal (GUI).
By doing this, it is easy to set up customer’s domain as a resource of this service and publish it to the Internet.

4.Simple fee structure

Adopted by assuming the enterprises as users is a simple charging system with fewer fluctuations from one month to another so that it will be easily incorporated to the budget (only the zone charge, with no query charge or no record charge).

10.3.2. Available Functions

10.3.2.1. List of Functions

Following functions are available with Customers with this menu:

Name

Description

Primary DNS function

Having an authoritative DNS server function of managing the master zone information.

Secondary DNS function

Holding a copy of zone information of Primary DNS server, and having a function of replacing the Primary DNS server for the processing when the latter is in trouble.

Portal function

Having a function of applying this menu and of changing the settings of the DNS server.

10.3.3. Description of Functions

10.3.3.1. Primary DNS function

  • Primary DNS function will provide an authoritative DNS server to manage the master zone information by adding zones, changing zone settings, using record sets.

  • You can create, edit, delete zones, create, edit, and delete record sets contained within them.

  • Both forward and reverse settings are possible for record sets.


primarydns

Note

  • The host name of the name server assigned to a name server group will be assigned after the zone is created for the first time.

  • Only one change is allowed from the Akamai portal so as to change the assignment of the name server assigned to the name server group.

  • Full service resolver (cache server) function is not provided. Customers are advised to prepare DNS resolvers.

  • As we do not acquire/manage domains, customers have to prepare for domain separately.

  • DNSSEC function is not provided. As we have another service that provides DNSSEC function, contact our sales personnel.

  • There is no zone transfer function to outside secondary DNS.



Setting items when the zone is created

Set up the following items when the zone is created.

Settings

Description

Zone Type

Specify Primary

Zone

Enter the domain name to be set as a zone.


Items that can be operated in the zone

Items that can be operated in the zone are as follows.

Settings

Description

Top-level CNAME

A function to allocate communications to Akamai platform without using CNAME when Akamai’s CDN service is used. This function is not used in this menu.

Enable Zone Apex mapping

A function to allocate communications to Akamai platform without using CNAME when Akamai’s CDN service is used. This function is not used in this menu.

Alias Zone

This is a function to create a zone with a different name of the relevant zone.


Note

  • Zone Apex mapping function is provided by another service. Consult our sales personnel.

Items that can be operated on record set

Items that can be operated with record set are as follows.

Item

Overview

Create record set

Create a record set in the target zone and register it.

Edit record set

Items in the registered record set are changed.

Delete record set

The registered record set will be deleted.
※ Please be careful because the deleted record set can not be restored or referred.

Record set
Record sets that can be set are as follows.

Record type

Parameter

A - IPv4 Addresses Active, Target, TTL
NS - Name server Active, Target, TTL
CNAME - Canonical name Active, Target, TTL
HINFO - System Information Active, Hardware,Software, TTL
PTR - Pointer Active, Target, TTL
MX - Mail exchange Active, Target, Priority, TTL
TXT - Text Active, Target, TTL
RP - Responsible person Active, Mailbox, Text, TTL
AFSDB - AFS database Active, Target, Subtype,  TTL
AAAA - IPv6 Addresses Active, Target, TTL
LOC - Location Active, Target, TTL
NAPTR - Naming Authority Pointer Active, Order, Preference, Flags, Service, Regular Expression, Replacement,  TTL
SSHFP - SSH Public Key Fingerprint Active, Algorithm, Fingerprint Type, Fingerprint, TTL
SRV - Service locator Active, Target, Priority, Weight, Port, TTL
SPF - Sender Policy Framework Active, Target, TTL

file upload

File upload that conforms to RFC-1035 allows the record set to be updated automatically.

Note

  • The file format to be used for the files to be uploaded is BIND format.

  • The record set has to contain one SOA record and at least two NS records.



10.3.3.2. Secondary DNS function

Secondary DNS function holds a copy of the zone information of the Primary DNS server, and replace Primary DNS for the processing when the latter is in trouble.

secondarydns

Note

  • Zone transfer of Primary DNS should conform to RFC1034 and 1035.

  • The refresh retry from ZTA to the client ‘s Primary DNS should conform to SOA record.

  • It is possible to accept DNS Notify. Accordingly, if the settings of the client’s Primary DNS are changed, such changes will be reflected immediately.

  • Zone transfer access to the client’s primary DNS is to be done from all the ZTAs. To allow the access from ZTAs, customers have to give, by means of the firewall rule or the like, permission to make communications possible.


Setting items when the zone is created

Set up the following items when the zone is created.

Settings

Description

Zone Type

Select “Secondary.”

Zone transfer mode

axfr

DNS Notify

In case of using DNS notification, select “Yes.”

TSIG

In case of using TSIG, select “Yes.”

TSIG algorithm

In case of using TSIG, specify algorithm from HMC-MD5.SIG-ALG.REG.INT, hmac-md5, hmac-sha1, hmac-sha224, hmac-sha256, hmac-sha384, hmac-sha512.

TSIG key name

In case of using TSIG, specify key name.

TSIG key

In case of using TSIG, specify secret key.

Customer Master Name Servers (IP addresses).

Specify IP address of master name server.

Zone

Enter the domain name to be set as a zone.


Items that can be operated in the zone

Items that can be operated in the zone are as follows.

Product

Description

DNS Notify

In case of using DNS notification, select “Yes.”

TSIG

In case of using TSIG, select “Yes.”

TSIG algorithm

In case of using TSIG, specify algorithm from HMC-MD5.SIG-ALG.REG.INT, hmac-md5, hmac-sha1, hmac-sha224, hmac-sha256, hmac-sha384, hmac-sha512.

TSIG key name

In case of using TSIG, specify key name.

TSIG key

In case of using TSIG, specify secret key.

Customer Master Name Servers (IP addresses).

Specify IP address of master name server.

Top-level CNAME

A function to allocate communications to Akamai platform without using CNAME when Akamai’s CDN service is used. This function is not used in this menu.

Enable Zone Apex mapping

A function to allocate communications to Akamai platform without using CNAME when Akamai’s CDN service is used. This function is not used in this menu.

Alias Zone

This is a function to create a zone with a different name of the relevant zone.

Note

  • Zone Apex mapping function is provided by another service. Consult our sales personnel.



10.3.3.3. Portal function

This menu provides a control panel for the operations related to orders and the Akamai portal function for checking the setup change/report.

Name

Purpose

Control panel

Customers can apply this menu and check the application status.

Akamai portal

Customers can check the settings related to this menu being used and can check the use situation.



Control panel

On the Control Panel, following operations can be conducted.

Product

Description

Main screen

You can check details of subscription in use or on order.

Download Template

You can download a subscription order file of this menu from here.

New/Add

You can place order for new/additional subscription plan.

Change

Customers can add/change/delete Akamai Portal account.

Delete

You can request to terminate the plans in use.



Akamai portal

Akamai Portal function provides the following functions.

Note

  • Akamai Portal does not support single sign-on from an ECL2.0 portal.

  • The maximum number of accounts that can be delivered for the Akamai portal is 5. If customers use Global Server Load Balance (Global Traffic Management) with the same tenant, customers can use 5 accounts for each service (but up to 10 accounts in total).

  • Authentication management function of Akamai has no API cooperation with ECL2.0 API.


Product

Functions

Setting function

This allows customers to set up Fast DNS functions.

Profile function

This allow customers to set up their account information.

Report function

The number of DNS requests can be checked.

Firewall rule notification function

Customers can check the IP address of the ZTA (Zone Transfer Agent) that will be the destination of the zone information to be transferred in case of using the secondary DNS.

Alert function

This is a function to issue various alerts.

API permission management function

This is a function to manage accounts for API when Akamai API is used.



10.3.4. Menu

10.3.4.1. Menu / Plan

This menu provisions the following Plans:

Plan

Number of available zones

1 Zone 1
2 Zones 2
3 Zones 3
4 Zones 4
5 Zones 5
6 Zones 6
7 Zones 7
8 Zones 8

Note

  • If customers want to use 9 or more zones, consult our sales personnel.



10.3.4.2. Subscription Methods

Any Customers who contracted Enterprise Cloud 2.0 can opt to place an order for subscription for this particular Menu.
Followings are the Subscriptions Types:

Order Types

Details

Subscription Methods

Offering Date

New Plan

Addition of a usage plan.

It can be done by placing order with a Subscription Order sheet from “New/Add” on the Control Panel.

Fourteen business days

Delete Plan

Terminate Plan

It can be done by requesting with a Request sheet from “Delete” on the Control Panel.

Five business days

Change

Information of Akamai Portal account(Add/Change/Delete)

It can be done by requesting with a Request sheet from “Change” on the Control Panel.

Five business days

Note

  • The due date conforms to our business days (except for Saturdays, Sundays, and public holidays) of Japan region.

  • Counting of business days will start after the receipt of subscription order and after Service Provider has confirmed that errors or omissions do not exist in the order form.

  • Customer should place additional subscription order and termination order at the same time, if customer wants to change plan in use. Please contacts sales persion to get detail information.


10.3.4.3. Restrictions In Subscriptions

Following are the sales unit, the number of uppermost maximum and lowermost minimum units.

Unit

Maximum Number

Minimum Number

Subscription Plan

No limit

One (1) Plan


10.3.5. Terms And Conditions

10.3.5.1. Common

Since it is not a domain registrar service, there is no domain name registration function. In order to make the DNS zone created in this menu available from the whole Internet, it is necessary to register the corresponding domain name separately in the domain registrar service and register the DNS server name provided in this menu as name server information.


10.3.5.2. Usage Conditions with Other Service Menus

This menu does not specifically limit as with combined usage with any other services.
It is possible to mainly combine with the following menu.

** Example of combination with other menu **

Menu

Use Case for Combination with Virtual Server Menu

Global Server Load Balanse (Global Traffic Management)

Pointing CNAME records to the platforms of Global Server Load Balance (Global Traffic Management) enables a global balancing of Internet public Web servers that are accessible with the host names of the clients’ domain.

Exemplar uses: Action against DR with Failover, weighted load distribution by Weighted, integration, into a single FQDN with help of IP Intelligence, of Web sites that have different FQDNs from one country to another.

Baremetal Server

By linking the address set for the bare metal server with the host name of the customer domain,

It is possible to create an Internet public web server that can be accessed by the host name of the customer domain.

Virtual Server

By linking the address set for the virtual server with the host name of the customer domain,

It is possible to create an Internet public web server that can be accessed by the host name of the customer domain.

Loadbalancer

By linking the host name of the load balancer and the host name of the customer domain and placing multiple resources under the load balancer,

It is possible to build an Internet public Web server that can be accessed by the load balancer loading host name of the customer domain.

Note

  • Fast DNS has no service and config cooperation with DNS menu.


10.3.5.3. Minimum Usage Period

This menu does not require any minimum usage period.


10.3.6. Pricing

10.3.6.1. Initial Fee

This menu does not require initial fees regardless of the plan or the subscription type.

10.3.6.2. Monthly Fees

This menu, regardless of the use of time, has a monthly fixed fee.

10.3.7. Quality of Service

10.3.7.1. Support Coverage

All of the functions provided in this menu will be covered by our support.
Note, however, that the following queries are not covered by our support.
  • Designs using this menu

  • Support for switching from the DNS that the client is currently using to Fast DNS.

  • Uses/specs of API

Note


10.3.7.2. Operations

  • The maintenance and the measures to correct failures of the control panel that contain the application of this menu will be provided in accordance with the Service manual of Support, which is defined separately.

  • Failure situations of this menu functions and Akamai portal, as well as the announcement and notification of the planned maintenance will be covered by the support of Akamai Technologies Inc. Log in to the Akamai portal top page and see the Message Center.

  • The information on failures will be on the Akamai portal for a couple of days from the recovery form the event.

  • Akamai portal has no maintenance window, but it is carried out on a monthly basis on Friday from 11:45 to 12:15 (JST) or from 12:45 to 13:15 (JST).

  • The query concerning this menu will be responded to in accordance with the Service manual of Support, which is defined separately.


10.3.7.3. SLA

SLA of this menu regulates to the SLA that is standardized in regular Enterprise Cloud 2.0 servicing operations.


10.3.8. Restrictions

10.3.8.1. Relations between Akamai portal and tenants

Note

  • This menu can be used from any tenant of any region, but the Akamai portal configurations that customers can use from this menu are linked only to the tenant of the applying party.

  • Application of a different tenant that is within the same contract or the same region will be provided with a different Akamai portal configurations.

  • If customers use Akamai portal configurations with a different contract, the same login account name (email address) cannot be used.

  • If customers apply the same account in both services of this menu and the Global Server Load Balance (Global Traffic Management), customers will be provided with the permissions for both services.



10.3.8.2. Zone restrictions

There are the following constraints in the zone setting.

Zone restrictions

Product

Restrictions

Details

Domain name of the zone

Impossibility of the double use of a single domain

If a zone setting has the same domain name as that in the settings of all the clients using the services of Akamai Technologies Inc., no zone setting of the same name is allowed.

Note

Sub-domain setting of the domain hosted on external DNS outside this menu
It is also possible to use delegation of delegation to the DNS of this menu for subdomains of domains hosted on external DNS outside this menu.
If a zone setting of the parent domain exists in the settings of all the clients using Fast DNS services of Akamai Technologies Inc., no zone setting for the sub domain cannot be carried out.
(e.g.) if a client using Fast DNS services of Akamai Technologies Inc. has a setting of example.com, no www.example.com can be set.

10.3.8.3. Restrictions on Record set

There are the following constraints on setting of record set.

Record set constraint

Product

Restrictions

Details

Reverse setting

The global IP address used by this service cannot be set.

No reverse setting is possible concerning the global IP address of this service. Forward setting is possible.

Maximum Number of records

25,000 / Zone

The maximum number of records settable for a single zone is 25,000.

Maximum number of TTL

999,999,999

The maximum value of TTL settable in the records is 999,999,999.

The range of wild-card application

In case of using a wild card, the applicable range is limited to the relevant host, so that it will not match none including the sub domain.

*.sample.co.jp IN A 1.1.1.1
www.sub.sample.co.jp IN A 2.2.2.2
In this case, aaa.bbb.sample.co.jp is name-resolved as 1.1.1.1, but aaa.sub.sample.co.jp does not match *.sample.co.jp.
If aaa.sub.sample.co.jp is name-resolved with wild card, it is necessary to designate *.sub.sample.co.jp.

Note

Setup of IP addresses being used outside of this service

  • For the forward setting, any global IP addresses can be set that are used outside of this service.
  • For the reverse setting, any global IP addresses can be set that are used outside of this service as long as the provider of the global IP address delegates the authority to the name server of this menu.
    For authority delegation please contact the provider of the global IP address.

10.3.8.4. About the service in general

  • In case of creating more zones than the number of usable zones that has been subscribed, some of the already created zones may be deleted without prior notice. Before creating a new zone, check their contract state.

  • Name server information is provided in host name. Actual IP address may change. Always use the host name when designating a name server.

  • If the customer’s data saved in this menu is lost, damaged or leaked, or is used for purposes other than the original purpose due to loss, damage, leakage or other reasons,
    As a result, we will not assume any responsibility for any direct or indirect damage caused to customers or third parties regardless of the cause.
  • We may suspend and delete customers’ use services if we determine that customer’s settings based on this menu are malicious or to have a negative impact on Service Provider and third parties.

  • Service Provider will terminate Customers’ stored data located in this Service Menu in the event that Customers terminate the contract they signed with Service Provider.

  • We do not guarantee that the functions provided by this menu has perfection, correctness, compatibility with the clients’ purposes of use.

  • We cannot guarantee the recovery from the malfunctions that may result from the compatibility between the components of his menu and the clients’ configurations and from the malfunctions that may result from the clients’ operations that are not specified by us.

  • We may provide information to the developer or the vendor of the apparatus that form a part in this menu.

    • Setup information obtained by providing this menu.

    • Managed details within such information relates to this provisioned menu.