What is DNSSEC and what does it do?
DNSSEC stands for Domain Name Security Extensions and is a security feature for your domain. DNSSEC works like a kind of digital signature which is added to the DNS records of your domain. With the help of this extra information, you ensure that people who want to visit your website actually end up there.
Why is DNSSEC used?
When you have a lot of traffic on your website, especially financial traffic, you want to secure your website well. Nowadays, an SSL certificate is considered the standard and you hardly ever see websites without an SSL certificate anymore. You can see how to request one here: https://mijn.host/kb/lets-encrypt-ssl-certificaat-aanvragen/. Although an SSL certificate secures your website well, it is still exposed to various threats. DNS spoofing is an example of this. With this, your visitors are redirected to a malicious server without them realizing it. When your visitor leaves his or her details there, this can cause problems. DNSSEC is an additional security measure that, among other things, prevents DNS spoofing.
Enabling DNSSEC
Mijn.host ensures that all your domains have DNSSEC enabled by default. In addition, you can very easily check/manage this yourself. You do this as follows:
When you are in the mijn.host control panel, go to your desired domain. Once there, you will see 'DNSSEC active' under domain settings, which is most likely already active. If you point the domain to external nameservers, it may be that DNSSEC is disabled; this is because mijn.host has no control over the other nameservers.
Still have questions? Get in touch.