Share this
An Update on Today’s DNS Outage: A Message From Our CEO
by Ken Carnesi on Jan 25, 2022 12:00:00 AM
As a recursive DNS resolver, we take any incident or perceived outage very seriously as a company. We know that you rely on us to be highly available as your DNS provider and DNS security. We recognize DNS is a critical aspect of your infrastructure, and for our MSP partners, that of your customers as well.
On Thursday January 13th at 20:08pm UTC and again on Tuesday, January 25th at 14:33 UTC, we began to receive tickets from users in the Northeastern United States stating they were experiencing DNS timeouts. Based on our monitoring, it seems that just under 1% of our network was impacted. Our network monitoring also showed a BGP route peering change which was shifting a heavy volume of DNS traffic to our nodes in Eastern Europe. The initial form of notifications to our customers was posted on our status page.
Our engineers discovered the root cause was a provider that made an upstream peering change. In both incidents, we immediately stopped advertising to that node and restored traffic right away. Service was completely restored by 20:27 UTC and 14:47 UTC, respectively.
When we select service providers and begin the process of deploying new anycast nodes, we tune our BGP advertisements and blocks based on the network paths which give our customers the best experience. In this particular case, our provider added a new peering connection that introduced routing changes that negatively impacted some of our customers. In response, we removed that node from service until we could fully understand the change and tune our BGP advertisements. We are actively improving our observability to detect and respond to these types of changes more quickly, ahead of any customer impact.
We will further vet this new provider to ensure they’re truly able to meet our SLAs. We hold our providers to a very stringent process—any providers unable to meet our SLAs will be eliminated from the DNSFilter network.
I sincerely apologize to our customers for this inconvenience, especially all those impacted. We remain highly committed to operating a reliable and innovative platform that you can trust.
Sincerely,
Ken Carnesi
Founder & CEO
Share this
Categories
- Featured (264)
- Protective DNS (21)
- IT (15)
- IndyCar (9)
- Content Filtering (8)
- Cybersecurity Brief (7)
- IT Challenges (7)
- Public Wi-Fi (7)
- AI (6)
- Deep Dive (6)
- Malware (4)
- Roaming Client (4)
- Team (4)
- Compare (3)
- MSP (3)
- Phishing (3)
- Tech (3)
- Anycast (2)
- Events (2)
- Machine Learning (2)
- Ransomware (2)
- Tech Stack (2)
- Secure Web Gateway (1)
Customer experience is the secret sauce that sets successful Managed Service Providers (MSPs) apart from the rest. In a market teeming with competition, you need to offer more than the best technology or the lowest prices. It's about how clients feel when they interact with your services. A stellar customer experience can transform a one-time client into a loyal advocate, while a poor one can send them running to your competitors. According to a ...
In July I published a blog on the DNSFilter website where I looked closely at our passive DNS data, highlighting early election trends in relation to threat domains.
The Children's Internet Protection Act (CIPA) is a critical law designed to ensure that students are protected from harmful online content. It requires schools and libraries to implement Internet safety measures, such as filtering and monitoring, to safeguard minors. Compliance with CIPA is essential for institutions seeking E-Rate program discounts for Internet access and internal connections.