Recursive DNS server

Print

Recursive DNS server

For Internet users in Latvia NIC.LV offers a free of charge DNS server cache.nic.lv:

IPv4 address: 91.198.156.20
IPv4 address: 194.8.2.2

IPv6 address: 2a02:503:8::
IPv6 address: 2001:678:84::

NIC.LV DNS server supports:

1. DNS query encryption via DoH and DoT.

# doh.lv IPv4
     - address_data: 91.198.156.20
        tls_auth_name: "doh.lv"
        tls_pubkey_pinset:
          - digest: "sha256"
             value: v31ySn6WhFmXt55j0eKgXh8x8xfPPWGGskk6AiqDMt4=
# doh.lv IPv6
    - address_data: 2001:678:84::0
         tls_auth_name: "doh.lv"
         tls_pubkey_pinset:
          - digest: "sha256"
              value: v31ySn6WhFmXt55j0eKgXh8x8xfPPWGGskk6AiqDMt4=

2. DNSSEC VALIDATION

DNSSEC or DNS Security Extensions add security to the DNS by providing DNS data authentication, which allows for verification that the DNS response has not been altered.

The NIC.LV DNS recursive server performs DNSSEC validation and automatically blocks homepages with incorrect DNSSEC signatures, thereby protecting its user from forged DNS data.

3. DNS Firewall (DNS RPZ)

The goal of the DNS Firewall is to protect its users from malicious content on the Internet, such as false banking websites, fraudulent e-trading platforms, virus-spreading websites, etc. All requests to malicious sites are blocked and users are redirected to a safe landing page.

The database of current cyber threats is maintained and regularly updated by CERT.LV, supplementing their own threat intelligence with information from a variety of other national and international sources. As CERT.LV also monitors and analyses cyberattacks of a regional nature (specific to Latvia), this firewall is the only DNS Firewall that can catch and block also locally targeted attacks.

With the help of DNS Firewall, infected systems can be detected more efficiently. It allows system administrators to quickly address the issue.

NIC.LV is not liable for any unplanned service interruption. NIC.LV reserves the right to refuse the service to customers who interfere with the service operations.