Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. From the Data Management tab, select the DNS tab -> Zones tab -> top-level authoritative zone that you want to monitor, and then click the Edit icon from the Toolbar. Note that you can configure this feature only at the zone level. You can also configure zones that have the same name in different DNS views.

    Note
    titleNote

    Once you configure a zone for DNS integrity check, you will not be able to add a parent zone above this zone. You must disable DNS integrity check for this zone before you can add the parent zone. 


  2. In the Authoritative Zone editor, toggle to the Advanced Mode, select the DNS Integrity Check tab -> Basic tab and complete the following:
    • Enable: Select this checkbox to enable the DNS integrity check feature.
    • Member: Click Select Member to select the Grid member you want to use for DNS integrity check. When you select a member, ensure that the member is configured to send and receive DNS queries and responses from Grid primaries (excluding stealth primaries) for the zone being monitored. Note that queries generated by DNS integrity check for the first reachable internal Grid primary are logged in relevant DNS reports. For information about reports, see Infoblox Reporting and Analytics.
    • Check Frequency: Enter how often the appliance monitors DNS data for the authoritative zone. Select the time unit from the drop-down list. The appliance periodically queries DNS data for the top-level zone based on the time interval you configure here. The default value is one hour, and the minimum configurable value is 15 minutes.
    • Enable Verbose Logging: Select this to enable detailed logging of events related to DNS integrity check.
      When you select this option, the appliance logs additional information in the syslog when DNS data discrepancies are detected. It also logs a message when no data discrepancies are found during a DNS data check. When you clear this checkbox, the appliance logs standard information in the syslog and does not log an event when no data discrepancies are found during a DNS integrity check. This is disabled by default. For information about the syslog, see Viewing the Syslog.
  3. Save the configuration.

Monitoring DNS Data Discrepancies for Authoritative Zones

...