Venue PHDCCI, New Delhi — Oct 24–25, 2026. Open in Maps
CRACCON 26 Logo
// Hands-On Workshop · with ICANN

KINDNS & DNSSEC: secure the root.

DNS underpins almost every Internet service — from name resolution to email security. Without DNSSEC, attacks like phishing, spoofing, and redirection can bypass existing defenses and undermine trust in Internet communication. This two-day technical workshop combines lectures and hands-on labs so participants leave able to implement DNSSEC and integrate it into real DNS infrastructure.

2Full Days
13Hands-On Labs & Topics
09:00–17:00Daily Schedule
icannDelivery Partner
$ dig +dnssec example.in
;; QUESTION SECTION:
;example.in. IN A
;; flags: qr rd ra ad;
RRSIG A 8 2 3600 ...
$ ldns-verify-zone signed.zone
Zone is verified and complete
LIVE LAB
// CHAIN OF TRUST · VALIDATED
// Workshop Objective

From theory to a working chain of trust.

Precisely because DNS is so central, it represents an attractive target for attacks. Without additional security mechanisms, DNS data can be forged or manipulated in transit — the consequences range from redirection to fake websites to the circumvention of established security mechanisms such as TLS certificates or same-origin policies in web applications.

In cooperation with ICANN, this two-day technical workshop combines lectures and hands-on lab work. Participants gain the practical skills needed to implement DNSSEC and integrate it into existing DNS infrastructures — plus the organizational strategies, best practices, and global significance behind it.

// Facilitators

Taught by ICANN's APAC team.

May Chan Lye Choon Technical Engagement Manager – Asia Pacific, ICANN

Based in Singapore, May joined ICANN's Office of the CTO to lead technical engagement across APAC, working with stakeholders to strengthen DNS operations, security best practices, and Internet resilience. She previously held technical, interconnection, and program management roles at Google, Edgio (formerly Limelight), Yahoo, Edgecast, Verizon Digital Media Services, and SingTel.

Champika Wijayatunga Technical Engagement Director – Asia Pacific, ICANN

Champika represents ICANN in technical and security engagement across Asia Pacific. He previously held managerial, specialist, and liaison roles at APNIC, and began his career at IBM before working across industry, academia, research, and training. He is a regular speaker at forums including INTERPOL and the Council of Europe.

// Curriculum

What you'll cover, and what you'll build.

Workshop Content

  • Recap: DNS overview and operations
  • DNS threats and mitigations
  • DNS security operational best practices and KINDNS
  • DNSSEC
  • Key management
  • Troubleshooting and tools

Hands-On Labs

  • Configuring recursive servers
  • Configuring authoritative servers
  • Secure zone transfers
  • DNSSEC signing
  • Establish and confirm chain of trust
  • DNSSEC validation
  • Troubleshooting and tools
// Who Should Attend

Built for the people who run DNS.

// Target Audience

Network & Systems Teams

Network/systems administrators and engineers from ISPs, RENs, universities, or corporations who are responsible for managing DNS service and operating authoritative and/or recursive DNS servers.

// Prerequisites

Come Ready to Lab

This is a hands-on workshop taught in a virtual lab environment. Participants should be familiar with basic DNS, networking, and basic systems administration. The lab is accessed via a web browser and SSH — bring a wifi-capable laptop.

// Agenda

Two days, hour by hour.

DAY 01 SAT, 24 OCT 2026

Foundations & Operations

  • 09:00–09:30Participant introduction and survey
  • 09:30–10:00DNS overview
  • 10:00–10:30Root zone management
  • 10:30–11:00Tea break
  • 11:00–12:30DNS operations, lab intro
  • 12:30–13:30Lunch
  • 13:30–15:00Lab sessions
  • 15:00–15:30Tea break
  • 15:30–17:00DNS security BCPs and KINDNS
  • 17:00Close of Day 1
DAY 02 SUN, 25 OCT 2026

DNSSEC in Practice

  • 09:00–10:30DNSSEC
  • 10:30–11:00Tea break
  • 11:00–12:30Lab sessions
  • 12:30–13:30Lunch
  • 13:30–14:00DNSSEC key management
  • 14:00–15:00Lab sessions
  • 15:00–15:30Tea break
  • 15:30–17:00Troubleshooting & tools, discussion, Q&A
  • 17:00Close of Day 2

// Agenda subject to change.

Seats are limited to the lab capacity.

Reserve Your Seat