MyNCSC Help Centre
Pages
Page 20 of 22
DNS Check
What does the service do?
DNS Check looks for critical domain vulnerabilities (like dangling DNS issues) in the UK public sector (for example gov.uk, gov.scot, gov.wales, llyw.cymru, mod.uk, mil.uk, nhs.uk, nhs.scot, nhs.wales, nhs.net, parliament.uk and police.uk)
Who is it provided by?
The service is provided in partnership with GDS (Government Digital Service), who curate DNS vulnerability feeds, and pass this data on through MyNCSC.
The data involved is delivered by GDS’s DNS Check service.
Who is it available to?
This service is available through MyNCSC to organisations responsible for securing UK public sector domains. This includes central government departments and arms-length bodies, local government, devolved administrations, NHS, law enforcement and emergency services.
The service is not available to academic institutions, charities or private sector organisations.
What do I need to do to set it up?
DNS Check is available to all eligible organisations, and any domains in an organisation’s asset portfolio will be automatically assigned to the DNS Check service (this can be reversed for specified domains).
To ensure DNS Check findings are received by your organisation, proof of asset ownership (or control) is required using MyNCSC asset verification.
We recommend verifying the highest level domain(s) within an organisation's asset portfolio as this verification is inherited by all child domains (sub-domains).
For help verifying your domains, read the Asset verification page in the getting started guide.
If you feel you should be eligible for DNS Check in MyNCSC, but your organisation is showing as ineligible, please contact us.