DNS Monitoring

Track resolution.

What to monitor

DNS is the kind of dependency that is invisible until it fails. Three signals together cover almost every failure mode: resolution latency, resolution success rate, and cache-hit rate at the resolver. Per-region latency catches the regional failures that aggregate metrics hide.

Authoritative DNS monitoring

Authoritative servers see only the traffic resolvers could not cache. Different signals matter at this layer: query mix, per-zone load, per-server health, NXDOMAIN rate that catches typo storms and scanning attempts.

Synthetic DNS probes

Synthetic probes catch failures before customers do. Probe critical records from multiple regions; validate expected values; monitor TTL behaviour for drift that signals misconfiguration.

Alerting on DNS

DNS failures cascade fast. Page immediately on real failures; downgrade configuration drift and cache-miss spikes to warnings investigated during business hours.