π Day 127 β Custom Domain, DNS, and Website Availability
π Topic
Connecting the Farina domain setup to DNS, CNAME, and production reachability.
π― Goal
Understand how custom domains and DNS records affect whether users can actually reach the website.
π What I Did
I reviewed the custom domain side of the Farina website. The repository includes a CNAME file for the production domain, and deployment checks make sure that file exists in the final build output. This connects directly to previous networking study: a website is not only code. Users need DNS resolution, correct domain configuration, HTTPS, hosting, and valid routing before the page loads.
Main areas covered:
- custom domain
- CNAME file
- GitHub Pages configuration
- DNS records
- production domain reachability
- deployment validation
π Key Cybersecurity Connections
DNS matters because many βwebsite downβ problems are not code problems. They can be DNS, certificate, routing, hosting, or deployment configuration problems.
π Investigation Questions
- Does the domain resolve?
- Does www point to the expected host?
- Is the CNAME included in the deployed output?
- Does HTTPS work?
- Is the issue DNS, hosting, or application-level?
π¨ Detection Opportunities
Potential monitoring ideas:
- DNS resolution failures
- unexpected DNS record change
- certificate errors
- CNAME missing from deployment
- traffic drop after domain configuration change
Example:
project=farina-farm-website
change_type=public_website_update
risk_area=repository_deployment_or_public_input
triage=review_change_intent_and_validate_build
π§ MITRE ATT&CK Techniques
Possible mappings depending on confirmed behavior:
- T1498 β Network Denial of Service
- T1499 β Endpoint Denial of Service
- T1565 β Data Manipulation
πΊ Visual Investigation Diagram
User browser
β DNS lookup
β GitHub Pages host
β HTTPS
β Static site response
β Challenges
The challenge was remembering that deployment success does not always mean reachability. The build can pass while DNS or domain configuration breaks access.
π What I Learned
I learned that custom domains are operational dependencies. They need simple checks and documentation.
β‘ Next Steps
- Document DNS settings
- Check domain after deployment
- Keep CNAME committed
- Separate DNS issues from app issues
π§ Reflection
This was useful because it turned a real project into security-aware learning without pretending that every task was a pure cybersecurity lab.
π§© Lessons Learned
What worked
Connecting DNS theory to a real domain.
What broke
Assuming website availability is only about code.
Why it broke
Users depend on DNS before they ever touch the app.
Fix / takeaway
When a website is unreachable, test DNS first, not last.
π Skill Progression Context
This supports cybersecurity progression because DNS appears constantly in SOC investigations, outages, phishing, and attacker infrastructure.
π TL;DR
No DNS, no website.
