Internet Technologies 28 December 2012

Weekend Project: Add DNSSEC Validation to an OpenWRT WiFi Device

By Dan YorkChief of Staff, Office of the CEO

Looking for a weekend project?  Do you use a WiFi access point based on OpenWRT?

If so, here are some quick instructions about how to install the Unbound DNS resolver that supports DNSSEC validation into OpenWRT.  What this will do is change the DNS resolver in your access point to start performing DNSSEC validation… so as more domains get signed you’ll be able to know that you are, in fact, getting to the correct domain. Plus, with DNSSEC validation available you’ll be able to start playing around with very cool new technologies like the DANE protocol… who knows what you’ll be able to do with it!

The great thing is that it turns out to be a trivial process, which is great to see!

P.S. While you’re hacking on your devices, check out some of the other DNSSEC tools we are listing…

Disclaimer: Viewpoints expressed in this post are those of the author and may or may not reflect official Internet Society positions.

Related Posts

Supporting a Secure and Trustworthy Internet 6 September 2024

US Government Networks Get a Security Boost: White House Roadmap Tackles Routing Vulnerabilities

The White House's Roadmap to Enhancing Routing Security is an important step toward strengthening routing security in the United...

Supporting a Secure and Trustworthy Internet 14 May 2024

The US Makes a Big Step Toward Better Routing Security

The US Department of Commerce began implementing better routing security practices—a step in the right direction for wider MANRS...

Securing Border Gateway Protocol (BGP) 18 April 2024

The US FCC Signals a Dangerous New Course on BGP Security

The US Federal Communications Commission recently released a draft Declaratory Ruling and Order in the Open Internet Proceeding. However,...