CortexDNS
Enterprise DNS Management Platform
Unified DNS management platform with purpose-built components for authoritative serving, load balancing, threat filtering, and recursive resolution — all managed from a single pane of glass. Enterprise-grade DNSSEC management, DDoS protection with intelligent rate limiting, DNS filtering, role-based access control, SIEM integration, real-time analytics, multi-language support, and DNS over TLS.
Capabilities
Core Features
Complete DNS infrastructure management from a single, unified platform.
Unified DNS Management
Manage Cortex Auth, Cortex Edge, and Cortex Filter from one platform. Centralized zone management, record editing, and configuration across all DNS components.
DNSSEC & DDoS Protection
Automated DNSSEC key management and zone signing. Built-in DDoS mitigation with intelligent rate limiting, query throttling, and threat detection via Cortex Edge.
DNS Filtering
Cortex Filter provides network-wide ad blocking, malware domain filtering, and content categorization. Custom blocklists and whitelists with granular control.
RBAC & SSO
Cortex IAM provides authentication with OAuth2, OIDC, and SAML support. Fine-grained role-based access control for zones, records, and administrative functions.
SIEM Integration
Native integration with enterprise security platforms. Export DNS logs and events to Syslog, Elasticsearch, Splunk, and IBM QRadar for centralized security monitoring.
Real-Time Analytics
Cortex Analytics engine with query classification, response time tracking, geographic distribution, and trend analysis dashboards for complete DNS visibility.
System Design
Architecture
Purpose-built DNS components unified under a single management layer.
High-performance authoritative DNS engine. Handles zone serving, DNSSEC signing, ALIAS records, and supports all standard DNS record types with relational database backend.
DNS-aware edge gateway and traffic director. Provides rate limiting, query routing, DoT/DoH termination, and DDoS protection at the DNS protocol level.
Network-level threat and content filtering engine. Blocklist management, query logging, client group policies, and DNS sinkholing for security and content control.
Recursive DNS resolver with DNSSEC validation. Handles upstream resolution, intelligent caching, and serves as the backbone for internal DNS queries.
Enterprise identity and access management module. OAuth2/OIDC/SAML authentication, user federation, role management, and single sign-on for the management UI.
High-performance analytics engine for DNS query logs. Enables real-time dashboards, query pattern analysis, and long-term trend storage at massive scale.
Kurumsal Dağıtım
Yüksek Erişilebilirlik Kümesi
30 saniyenin altında otomatik yük devri ile 3 düğümlü aktif-pasif küme. Tek hata noktası yok.
PostgreSQL HA
Patroni + etcd
RAFT konsensüs ile streaming replikasyon. 30 saniyenin altında otomatik lider seçimi ve yük devri. Senkron commit ile sıfır veri kaybı.
< 30sn yük devriDNS Replikasyon
Master / Slave AXFR
Cortex Auth master-slave replikasyonu, AXFR zone transferi ve NOTIFY propagasyonu. Master çökse bile slave'ler DNS servisi vermeye devam eder.
< 60sn propagasyonSanal IP Yük Devri
Keepalived VRRP
Web ve DNS trafiği için çift Sanal IP, sağlık kontrolü tabanlı yük devri. İstemciler düğüm çökmesini fark etmez.
< 3sn yük devriIAM Kümesi
JDBC_PING Keşfi
Cortex IAM sunucuları JDBC keşfi ile kümelenir, dağıtık oturum önbelleği kullanır. Multicast veya harici koordinasyon gerekmez.
< 10sn yük devriRedis Sentinel
Çoğunluk Tabanlı Seçim
Sentinel izleme ve çoğunluk tabanlı master seçimi ile üç düğümlü Redis. Otomatik replika terfi ile önbellek sürekliliği sağlanır.
< 30sn yük devriFiltre Senkronizasyonu
Orbital Replikasyon
Cortex Filter engel listeleri ve yapılandırması her 5 dakikada tüm düğümler arasında senkronize edilir. Her düğümde tutarlı filtreleme politikası.
5 dk senkronizasyonAklinizdaki bir proje mi var?
Urun, danismanlik veya sadece fikir alisverisi — konusmaktan memnuniyet duyariz.