4. GSLB ?? ??
GSLB
F5 DNS Citrix A10 Akamai* Radware Brocade Cisco
Architecture¡¯s Suppor
ted
All
Authoritative Repl
ace
Authoritative Scre
ening or Replace
Delegation
Authoritative Repl
ace
Authoritative Scre
ening
Authoritative Repl
ace
IPv6 ? ? ? ? ? X X
DNSSec + GSLB On-the-Fly Responder ? ? ? Pass-through Pass-through
# Methods 14 12 11 ? 7 9 7
# Health Checks 26 7 18 ? 20 12 10
IP Anycast ? X X ? X ? ?
IP Geo-location Sourc
e
Digital Element
Manual or 3rd Part
y (non-included)
IANA / ARIN
(manual update)
Akamai
IANA
(manual update)
[8 regions]
Manual
Manual
[60 areas]
Incremental Sync ? X X ? X X X
5. DNS Services ?? ??
DNS
Services
F5 DNS Citrix A10 Radware Akamai* Brocade Cisco
Architecture options **
UDPTCP LB,
DNS LB,
Server
UDPTCP LB,
DNS LB,
Server
DNS LB
UDP LB
Proxy
UDPTCP LB,
DNS LB
DNS Server
(no LB)
UDP LB
DNS Server (
no LB)
IPv6 ? ? ? ? ? X X
IPv6 to v4 translation ? ? ? X ? X X
DNSSEC signing ? ? ? ? ? ? X
DNSSEC external HSM su
? X X X X X X
pport
DNSSEC Validation ? X X X ? X X
DNSSEC TLD ? X X X X X X
DNS iRules ?
Client-side only,
No packet modific
ation,
No TCP
Client-side only,
No packet modific
ation
X X X X
DNS Services module ? No DNSX, DNS Pr
oxy, IPAnycast
No DNSX, IPAnyc
ast
No DNSX, DNS Pr
oxy, IPAnycast
X
No DNSX, DNS
Proxy
No DNSX, DNS
Proxy
DNS Specific LB features DoS Protectio
ns DoS Protections DoS Protections DoS Policy DoS Protections X X
DNS Caching/Resolving
? Can act as a forwa
rder and cache
Can act as a forw
arder and cache
X ? X X
Reporting/Analytics ? ? Reporting Only Reporting Only ? Reporting Only Reporting Only
DNS PayG ? Entire box. X Entire box. Entire box. Entire box. X
Editor's Notes
#5: *As far as we can tell¡ Akamai is very tight with technical details.
These are based more on the lack of information than on positive confirmation.
** Based on documentation recommendations, some systems could act as a server in a crises, but are not documented as such
***DNSSEC for GTM supports SHA-2
#6: *As far as we can tell¡ Akamai is very tight with technical details.
These are based more on the lack of information than on positive confirmation.
** Based on documentation recommendations, some systems could act as a server in a crises, but are not documented as such
***DNSSEC for GTM supports SHA-2