DNS is operated by 50+ servers across the world using AnyCast (fastest server near you). All domains are digitally signed with DNSSEC (ECC 256 bits keys & NSEC3). We fully support TLSA & SSHFP fields.
HTTP/1.1&2.0 & HTTPS are supported. For HTTPS (crypted) we enforce best in class ciphers (128+ bits), Key Pining (HPKP) and Http Strict Transport Security (HSTS). Fingerprint of valid certificates are also provided in DNSSEC through TLSA field.
All emails are signed with DKIM and sent preferably through TLS. We publish DMARC and SPF policies through DNSSEC associated fields. Received emails are greylisted and checked against blacklists, and for virus and spam.
A remote access through SSH is provided. We publish the fingerprint of our key in our DNSSEC zones through SSHFP field. We provide a FTP server for convenience and easily dropping a file.
IPSec / VPN is provided to IKEv1 and IKEv2 compatible clients (we do not support commercial products). We provide dual stack (IPv4/IPv6) VPNs. A specific Certificate Authority is in place as we do not trust any other CA for this service.
Aggregated Bandwidth: 7.2 Gbit/s IPv4 through OpenTransit IPv6 through OpenTransit, Proxad and Hurricane Electric All services are dual stack (IPv4 & IPv6).