Document toolboxDocument toolbox

Anycast Support for DNS Forwarding Proxy

Using Anycast with DNS Forwarding Proxy when a policy has been configuring to deploy all services with maximum resiliency, Anycast assures DNS services shall continue uninterrupted in the following cases.

  1. When a customer has a policy to deploy all services with maximum resiliency, and when DNS forwarding proxies are deployed, then two or more DNS forwarding proxies can be configured in active/active mode to achieve maximum resiliency.
  2. When a customer has a policy to deploy all services with maximum resiliency, and when DNS forwarding proxies are deployed in Anycast and no local DNS fallback is configured, then DNS Forwarding Proxy will monitor service availability, with the possibility of resolving the customer’s requests, via Infoblox Threat Defense. 
  3. When a customer has a policy to deploy all services with maximum resiliency, and when DNS forwarding proxies are deployed and local DNS fallback is configured, then DNS Forwarding Proxy will monitor service availability, with the possibility of resolving the customer’s requests, via Infoblox Threat Defense. Then DNS Forwarding Proxy will fallback to a local protected DNS.

The DNS Forwarding Proxy can be deployed using DNS Anycast with maximum resiliency ensuring that DNS services are operating without interruption. When configuring the DNS Forwarding Proxy, the following provisioning options are available:

  • Provision DNS Anycast on one or more IPv4 addresses.
  • Provision DNS Anycast with protocol configurations of BGP or OSPF (protocol, neighbor, security/authentication).