DNSSEC Appliances by Cygna Labs Corp automate DNS integrity and authentication. DNS Security Extensions (DNSSEC) enable you to publish your namespace so that validating resolvers can be assured that the data they receive from you has been published on your DNS servers and was not manipulated en route. DNSSEC configuration requires strong technical expertise for initial setup and ongoing maintenance. Tasks include creating key signing and zone signing keys, signing zone information, and rolling keys. The Sapphire Sx20 and Sx10D hardware and virtual appliances from Diamond IP automate key generation, zone signing, and key rollover based on your policies. The Sx models automate the setup and management of signed zones. The Sapphire Sx-series appliances can be deployed as standalone or in a multi-master pair, providing redundancy for signed zone integrity during appliance or site failures. Dual corroboration technology ensures reliable failover while minimizing flapping and flash key rollovers. Security with centralized management. IPControl software from Diamond IP provides comprehensive DNS management for signed and unsigned zones, supporting all BIND option parameters, views, and resource record types. Zones can be deployed to Sapphire hardware or virtual Sx appliances for automated key and signature maintenance. IPControl enables configuration of DNSSEC validation parameters for BIND servers or Sapphire appliances serving as validating resolvers.