Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

IM -2552: Updated and replaced the DNS Admin and DNS Tabs with DNSv3 - featuring a more efficient backend, new user interface, and a DNS "Group" system.

Image Added

DNSv3 restructures ProVision's DNS tab to organize DNS zones into "DNS Groups". Zones are gathered under Groups, default parameters and servers are set per Group, and pushes may be done on a per Group level. A "Default Group" is automatically provided in ProVision, but other Groups may be desired to organize zones and default values. See the updated workflow for DNSv3 at DNSv3 Workflow Concepts.

DNSv3 changes ProVision's approach to Admin-level DNS tasks, integrating them under the DNS tab rather than a separate "Admin" tab. Server management has been integrated into the DNS Tab, under "DNS Servers" (accessible only to admin-level users), default parameters, SOA, ACLs, and exports are incorporated into each DNS Group.

Permissions for interacting with DNS elements in DNSv3 have been adjusted, incorporating DNS items under the "Resource" system when setting User Group Permissions. This allows for fine-tuned settings on individual DNS Groups, servers, and zones within the Permissions Group. 

For an overview flowchart of working in DNSv3, see Review the updated workflow for DNSv3 at DNSv3 here:  Workflow Concepts.Image Removed

DNSv3 Related changes include:
  • Access DNS Servers, Groups, and Zones from the same ProVision DNS tab. 
  • Removed the DNS-Admin tab.  Functionality previously in  DNS-Admin is now contained under the DNS tab "DNS Servers" area (Admin only), with SOA and Nameserver defaults set per-Group. 
  • Introducing "DNS Groups" - Organize your Zones and Servers together into a single place. With Groups, you are able to organize groups and push whole group configurations at the same time. 
  • Updated Zone list interface and View Zone pages.
  • Zone Error Monitoring - Check zones for errors, and receive detailed feedback. 
  • Schedule Pushes at the server, group, or individual zone level. 
  • DNS Templates have been removed and replaced with an option to "Clone Existing Zone" when creating a new zone. 
    • "Template" Zones may be created under a "Template" DNS Group, and given an appropriate name (templateABC.com.) to reference when cloning. Any existing DNS Templates with automatically be migrated to a new "Template" DNS Group during the 6.0 upgrade. 
    • See Working with DNS Groups and Working with DNS Zones for more information on creating new Groups and zones, respectively.
  • Incorporated ACLs / Views into a DNS Group module. 
  • Enabling and configuring DNSSEC has been revised to work within the DNSv3 server / Groups system. 
  • The Users tab Group Permissions have been updated to remove "DNS" as a separate permissions area, as DNS entities (servers, groups, zones) are now considered "Resource" items. 
    • In order to push a DNS Group or zone, Users without global or admin permissions will need to have resources permissions specifically added for that server, DNS Group, or zone.
    • See Users & Permissions
  • Revised the Data Import -> BIND DNS Zone Upload / Import tool to be compatible with DNSv3 and ProVision-exported DNS Group export .zip files. Imports may now associate a DNS Group to import zones under, and server mapping has been removed (as servers are now associated at the DNS Group level).

...