{"repo":"desec-io/desec-stack","free":true,"listed":false,"github":"https://github.com/desec-io/desec-stack","clone":"git clone https://github.com/desec-io/desec-stack.git","description":"Backbone of the deSEC Free Secure DNS Hosting Service","language":"Python","stars":646,"topics":["dns","dnssec","rest-api","dyndns"],"license":"MIT","category":"networking-infra","readme_excerpt":"deSEC Stack =========== This is a docker compose application providing the basic stack for deSEC name services. It consists of - nslord : Eventually authoritative DNS server (PowerDNS). DNSSEC keying material is generated here. - nsmaster : Stealth authoritative DNS server (PowerDNS). Receives fully signed AXFR zone transfers from nslord . No access to keys. - api : RESTful API to create deSEC users and domains, see documentation. - dbapi , dblord , dbmaster : Postgres databases for api and nsmaster , MariaDB database for nslord , respectively. - www : nginx instance serving static website content and proxying to api - celery : A shadow instance of the api code for performing asynchronous tasks (email delivery). - rabbitmq : celery 's queue - memcached : api -wide in-memory cache, currently used to keep API throttling state - openvpn-server : OpenVPN server used to tunnel replication traffic between this stack and frontend DNS secondaries - prometheus : Prometheus server for monitoring Requirements ------------ Although most configuration is contained in this repository, some external dependencies need to be met before the application can be run. Dependencies are: 1. We run this software with the --userland-proxy=false flag of the dockerd daemon, and recommend you do the same. 2. Also, configure certificates for openvpn-server : - Get easy-rsa and follow this tutorial. - Then, copy ca.crt , server.crt , and server.key to openvpn-server/secrets/ . - Create a pre-shared secret ","default_branch":null,"files":null,"tree":[],"storefront":"/r/desec-io","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/desec-io/desec-stack/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}