NameDefence DDI + SWG Platform
Enterprise Data Sheet
Platform Overview
NameDefence is a next-generation DDI (DNS, DHCP, IPAM) platform with a built-in Secure Web Gateway (SWG) and GSLB load balancing, unifying DNS security, web access control, network address management, and IP infrastructure control in a single enterprise solution. With 21+ integrated modules, AI-powered threat detection, MAC-fingerprint DHCP security, and real-time analytics, it sets the new standard for unified network security.
Key Features
DNS Security, SWG & GSLB
- Policy-based DNS firewall with drag-and-drop rule chains
- Secure Web Gateway (SWG) — HTTPS/SNI inspection, URL & app control, TLS fingerprinting, SafeSearch, custom block pages
- GSLB — health-checked pools (HTTP/HTTPS/TCP/PING), weighted round-robin, geo-proximity & latency-based routing
- AI-powered domain categorization (120+ categories)
- DNS tunnel detection & data exfiltration prevention
- GeoIP-based country filtering
- Domain risk scoring (Safe to Critical)
- WHOIS monitoring & domain age tracking
- Visual DNS query simulator
- Source groups (IP/CIDR/Range)
DHCP Management & Security
- Built-in enterprise DHCP server
- DHCP Security — MAC fingerprinting & device classification (OUI vendor identification)
- MAC spoofing detection & rogue DHCP server detection
- DHCP starvation attack mitigation & MAC blacklist/whitelist
- Subnet & scope management with pool ranges
- Static IP reservations & active lease monitoring
- Zero-downtime migration (ISC/Windows/MikroTik)
- VLAN support & custom DHCP options
IP Address Management
- Visual IP grid with color-coded status
- Rogue device detection & alerting
- Auto-scanning (5min to hourly intervals)
- IP lifecycle history tracking
- Device type classification
- DHCP synchronization
- Subnet utilization & capacity planning
Monitoring & Administration
- Real-time WebSocket dashboard
- Log analyzer with live streaming
- 7 alarm types with severity levels
- Comprehensive audit logging
- Automated reports (CSV/JSON/PDF)
- RBAC with LDAP/AD integration
- SIEM/Syslog forwarding
- Customizable block page
Technical Specifications
| Deployment | On-Premise / Private Cloud |
| Architecture | Modern Microservices |
| Database | Enterprise-grade with In-Memory Cache |
| DNS Engine | High-Performance Custom Engine |
| DHCP Engine | Enterprise DHCP Engine |
| Protocols | DNS, DHCP, HTTPS, WebSocket, LDAP, Syslog, SMTP |
| Auth | LDAP/AD SSO, Token-based API, RBAC |
| Zone Transfer | AXFR/IXFR with TSIG |
| API | RESTful with full CRUD |
| Agents | Cross-platform (Windows/Linux/macOS) |
| High Availability | Active-Active clustering |
| Performance | <1ms avg response, 150B+ queries capacity |
Compliance & Certifications
Industry Use Cases
Sovereign KVKK/GDPR-compliant DNS filtering with full audit trails and BTK alignment
Zero-day domain blocking, DNS tunnel detection, and risk-scored domain analysis
Patient data protection, IoT device DNS control, and HIPAA-aligned logging
Content filtering, schedule-based policies, and AI-powered classification
Carrier-grade DNS with multi-region management and GeoIP intelligence
Unified DDI with RBAC, multi-policy management, and centralized DHCP/IPAM
Contact & Demo
Ready to see NameDefence in action? Contact our team for a personalized demo and POC deployment.
NameDefence is a next-generation DDI (DNS, DHCP, IPAM) platform with a built-in Secure Web Gateway (SWG) and GSLB load balancing, unifying DNS security, web access control, network address management, and IP infrastructure control in a single enterprise solution. With 21+ integrated modules, AI-powered threat detection, MAC-fingerprint DHCP security, and real-time analytics, it sets the new standard for unified network security.
- Policy-based DNS firewall with drag-and-drop rule chains
- Secure Web Gateway (SWG) — HTTPS/SNI inspection, URL & app control, TLS fingerprinting, SafeSearch, custom block pages
- GSLB — health-checked pools (HTTP/HTTPS/TCP/PING), weighted round-robin, geo-proximity & latency-based routing
- AI-powered domain categorization (120+ categories)
- DNS tunnel detection & data exfiltration prevention
- GeoIP-based country filtering
- Domain risk scoring (Safe to Critical)
- WHOIS monitoring & domain age tracking
- Visual DNS query simulator
- Source groups (IP/CIDR/Range)
- Built-in enterprise DHCP server
- DHCP Security — MAC fingerprinting & device classification (OUI vendor identification)
- MAC spoofing detection & rogue DHCP server detection
- DHCP starvation attack mitigation & MAC blacklist/whitelist
- Subnet & scope management with pool ranges
- Static IP reservations & active lease monitoring
- Zero-downtime migration (ISC/Windows/MikroTik)
- VLAN support & custom DHCP options
- Visual IP grid with color-coded status
- Rogue device detection & alerting
- Auto-scanning (5min to hourly intervals)
- IP lifecycle history tracking
- Device type classification
- DHCP synchronization
- Subnet utilization & capacity planning
- Real-time WebSocket dashboard
- Log analyzer with live streaming
- 7 alarm types with severity levels
- Comprehensive audit logging
- Automated reports (CSV/JSON/PDF)
- RBAC with LDAP/AD integration
- SIEM/Syslog forwarding
- Customizable block page
| Deployment | On-Premise / Private Cloud |
| Architecture | Modern Microservices |
| Database | Enterprise-grade with In-Memory Cache |
| DNS Engine | High-Performance Custom Engine |
| DHCP Engine | Enterprise DHCP Engine |
| Protocols | DNS, DHCP, HTTPS, WebSocket, LDAP, Syslog, SMTP |
| Auth | LDAP/AD SSO, Token-based API, RBAC |
| Zone Transfer | AXFR/IXFR with TSIG |
| API | RESTful with full CRUD |
| Agents | Cross-platform (Windows/Linux/macOS) |
| High Availability | Active-Active clustering |
| Performance | <1ms avg response, 150B+ queries capacity |
