NSD


In Internet computing, NSD is an open-source Domain Name System server. It was developed by NLnet Labs of Amsterdam in cooperation with the RIPE NCC, from scratch as an authoritative name server. The intention of this development is to add variance to the "gene pool" of DNS implementations
used by higher level name servers and thus increase the resilience of DNS against software flaws or exploits.
NSD uses BIND-style zone-files.
NSD uses zone information compiled via zonec into a binary database file which allows fast startup of the NSD name-service daemon, and allows syntax-structural errors in Zone-Files to be flagged at compile-time.
The collection of programs/processes that make-up NSD are designed so that the NSD daemon itself runs as a non-privileged user and can be easily configured to run in a Chroot jail, such that security flaws in the NSD daemon are not so likely to result in system-wide compromise as without such measures.
As of May, 2018, four of the Internet root nameservers are using NSD:
Several other TLDs use NSD for part of their servers.