A refreshed experience is in progress. A few pages may be temporarily limited.

As a Service

Reach out to KIDAN for inquiries and support.

On-demand Consulting

Expert guidance for strategic technology decisions.

Toc

24/7 global technology operations center.

Implementation

Seamless enterprise technology solution deployment.

Training

Empower teams with expert-led technology programs.

Services

Enterprise services supporting critical IT infrastructure.

Solutions

Tailored IT solutions for operational excellence.

SOC

End-to-end security operations monitoring.

Support

Dedicated IT support for seamless operations.

Most visited page

Expert guidance for strategic technology decisions.

About Us

Learn more about KIDAN’s vision, values, and expertise.

Our Partners

Meet KIDAN’s partners working together to deliver technology solutions, support, and growth for businesses.
Leading enterprise IT management solutions
offered via KIDAN’s trusted partner ecosystem for scalable, secure operations.
10 +
Leading enterprise IT management solutions
offered via KIDAN’s trusted partner ecosystem for scalable, secure operations.
110 +
Enterprise clients across industry sectors
trust KIDAN’s strategic partnerships and solutions to drive technology success.
950 +

ManageEngine DDI Central for
DNS and IPAM 

Centralize the management of DNS, DHCP, and IP address space (IPAM) to simplify network administration, automation, and visibility. 

Is Your Network Agile, or Just Connected? 

The Challenge – Operating Without DDI Central

Without a unified DDI platform, IT teams face fragmented control, manual processes, and security gaps across DNS, DHCP, and IP address management.

Complex Configurations

Managing DNS, DHCP, and IPAM separately leads to errors and downtime. 

Manual Workload

Network admins waste hours on repetitive tasks instead of strategic improvements. 

Limited Visibility

Disconnected tools make it hard to track IP usage and detect anomalies.

Security Risks

Inconsistent configurations expose networks to vulnerabilities and compliance issues. 

THE CHAOS: A Fragmented Approach

Without endpoint management, chaos, risk, and inefficiency
are inevitable.

Password Reset Bottlenecks 

Help desks are overwhelmed with routine password reset and account unlock requests, draining IT time.

Disjointed Access Experience 

Users juggle multiple credentials across systems, leading to password fatigue and increased security risks. 

Weak Authentication Practices 

Relying on single-factor authentication leaves endpoints and applications vulnerable to credential-based attacks. 

Compliance Gaps 

Inconsistent password policies and lack of audit trails make it difficult to meet regulatory requirements. 

What DDI Does? 

DDI software speeds up connecting new devices by automating IP name and address management from planning and configuration to tracking IP use and handling routine tasks. This reduces manual work and makes network management faster and more consistent

DNS

DNS

Translates service and host names into numeric IP addresses and ensures reliable, efficient access to network resources for all connected devices across your infrastructure.

DHCP

DHCP

Automates the process of assigning IP addresses and other network configuration parameters to devices within your network, ensuring smooth connections for any device joining your network.

IPAM 

IPAM 

Takes the hassle out of managing IP address space on your network, providing real-time tracking and control of used and unassigned IP addresses utilized by DNS and DHCP services.

What can you do with DDI
Central?

Simplify DNS, DHCP, and IP address management for your network infrastructure with DDI Central.

Centralized visibility

Consolidate the configurations of your external and internal DNS-DHCP clusters, including their IPv4 and IPv6 address plan and inventory, onto a unified interface for centralized visibility to ensure network-wide consistency and accuracy of managed data.

Holistic problem management

Enable administrators to make informed decisions and troubleshoot comprehensively by mapping dependencies among DHCP scopes provisioning addresses and host names for hosts entering your network.

Core services monitoring

Monitor your DNS or DHCP server’s load and performance with an intuitive server dashboard that depicts the servers’ state in real time including stats like server’s network, IP, memory, disk and CPU utilization.

Instant network overview

Gain real-time visual insights into IP allocations, DNS resolutions, and DHCP lease statuses, facilitating better decision-making and network planning with up-to-date information.

Domain monitoring

Visualize and monitor the query and response traffic to measure the performance of your on-premises hosted domains.

Work From Anywhere, Anytime, And Access All Your Analytics 24/7! 

Perform activities like viewing dashboards, analyzing KPIs, and sharing reports all from your mobile device. 

Stay connected with your data effortlessly, ensuring actionable insights wherever you are, anytime.

Manage Reports, Track Metrics, And Collaborate Instantly Right From Your Smartphone, Without Missing A Beat. 

All Features

DNS query and response analytics

Gain real-time insights into your network’s DNS traffic to identify potential security threats, analyze and optimize zone performance, and proactively troubleshoot issues within your network.

DNS zone management

Leverage the zone editor tool to accurately map or update the zone data for the DNS records of a domain. Enhance administrators’ understanding of the structure and relationships within a specific zone for smooth zone management.

DNS aging and scavenging

Streamline regular DNS maintenance by automating the timely identification and removal of stale records, ensuring a reliable, up-to-date DNS infrastructure.

DNS monitors

Associate DNS monitors with DNS zone records to monitor them continuously with TCP and PING checks to validate uptime and reachability. Spot resolution failures instantly, ensuring consistent query responses across all hosted zones.

DNS64

Enable smooth communication between IPv6-only clients and IPv4-only DNS servers by dynamically synthesizing and delivering AAAA records that combine a special IPv6 prefix with the original IPv4 resources, ensuring a cohesive, inclusive network environment.

Zone versioning

Create zone backups across both Windows and Linux clusters with versioned snapshots for safe, consistent DNS recovery. Roll back confidently to maintain operational continuity with reliable version control that preserves DNS stability during migrations or updates.

DNS threat intelligence

Block malicious domains in real time with DNS threat intelligence by integrating vetted threat feeds from ManageEngine CloudDNS, premium cybersecurity vendors, or custom STIX/TAXII sources—using reputation scores for proactive DNS-layer defense.

Domain blocking

Boost security by prohibiting access to recognized collections of undesirable domains and customize redirection using personalized IP settings.

DNS Firewall Response Policy Zones (DFW) (RPZ)

Enforce DNS firewall decisions using Response Policy Zones (RPZ) to block, redirect, or sinkhole known-bad destinations—adding policy-based control at the DNS layer to stop malware callbacks and risky domains before they resolve.

DNSSEC with TSIG

Mitigate the risk of cache poisoning and manipulator-in-the-middle attacks by validating DNS responses through cryptographic signature verification, ensuring that end users receive only accurate, trustworthy DNS resources.

DNS Detection and Response (DDR)

Quarantine suspicious IPs and subnets in real time by blocking DNS queries and DHCP leases for compromised clients—preventing threat propagation at both DNS and DHCP layers.

DNS over TLS (DoT)/DNS over HTTPS (DoH)

Encrypt DNS traffic with DoT and DoH to protect user privacy and ensure data integrity—ideal for both enterprise-grade networks and privacy-focused environments.

Response Rate Limiting (RRL)

Protect your authoritative name servers by intelligently regulating response throttling to mitigate the impact of DNS amplification attacks, ensuring uninterrupted access for legitimate clients and upholding a well-balanced approach to security.

DHCP server management

Set up DHCP servers manually or discover configurations from your existing DHCP environment, including DHCP scope configurations, DHCP options, and DHCP failover setups for your IPv4 address space. Monitor DHCP servers’ network, IP, CPU, memory, and disk utilization from an intuitive dashboard to asses their load and performance.

DHCP fingerprinting

Customize IP resource allocation by granularly identifying, categorizing, and controlling the various types of devices connecting to your network. Provide targeted configurations, enforce tailored compliance policies and access privileges, and streamline troubleshooting based on the device’s type, OS, and manufacturer.

Pre-boot execution environments

Create and clone templates to enable devices to autonomously acquire IP addresses, initiate boot processes, and seamlessly integrate into your network.

Rogue DHCP server detection

Quickly identify and isolate rogue DHCP servers with timely email alerts, leveraging real-time monitoring and automated IP inventory reconciliation to ensure a secure, compliant network environment.

Static subnet and lease management

Simplify IP management for critical devices requiring fixed IP addresses by managing static leases and subnets. Create custom fields and directly import static leases from spreadsheets into designated fields without setting up static subnets.

DHCP templates

Quickly segment and manage DHCP clients at scale with prebuilt templates for Vendor and Client Identifiers—automatically group devices by OS, manufacturer, or custom attributes for targeted IP allocation and policy-driven DHCP configurations.

Network IP address space insights

Gain comprehensive visibility into IP address utilization and availability across diverse networks and VLANs within your organization. Analyze the patterns of IP distribution among various hardware vendors and take control by directly allocating fixed addresses for hosts, ensuring precise management of IP resources.

Lease history insights

Probe the audit trail of current IP assignments in your network to access the DNS mapping and query analytics for a specific IP. Track and analyze an IP’s transitions over time to identify its association with specific devices, aiding in efficient troubleshooting and ensuring compliance.

IP-MAC identity mapping

Access user information related to the network and end-host devices and analyze users’ consumption of IP resources. Streamline change management and swiftly mitigate and troubleshoot network issues by following a user-centric approach.

AWS cloud integration

Correlate and visualize AWS network assets—like EC2, RDS, ECS, VPCs, and Subnets—within a single view for deeper cloud-native insights.

Multivendor DNS integration

Control your entire multicloud DNS landscape from one place—consolidate and sync zones across AWS, Azure, GCP, and Cloudflare.

Domain Creation with bidirectional Sync

Provision new zones and domains across cloud providers directly from DDI Central—with automatic two-way synchronization to ensure changes made in DDI Central or the provider stay fully aligned.

Unified DNS record control

Create, edit, and delete DNS records across multiple providers from a single platform, with complete audit trails for every operation.

SAML authentication

Simplify the login process with centralized authentication policies from identity providers like Okta, Ping, Onelogin, and Microsoft Azure through SAML (Security Assertion Markup Language) authentication.

LDAP authentication

Centralize user authentication, easily manage user accounts, and enforce security policies across your distributed Microsoft network infrastructure using LDAP (Lightweight Directory Access Protocol) and LDAPS (LDAP over SSL) as a Single Sign-On (SSO) solution to authenticate users against a centralized directory, such as Active Directory.

Scheduled reports

Set up scheduled reports for DHCP subnets specifically for administrators to provide an analytical visual snapshot of subnet capacity. This aids in advanced capacity planning and monitoring IP utilization thresholds over time. Additionally, the scheduled reports on DNS zones offer periodic updates on domain queries, helping admins to understand traffic patterns, as well as user behavior and preferences.

Role-based access controls

Elevate security with precise permissions tailored to individual roles for DNS domains and DHCP scopes, ensuring efficient, secure access management for DDI clusters.

Contact groups

Organize and manage contacts for streamlined communication within each DDI cluster. Ensure that critical messages reach the right users promptly, enhancing overall responsiveness and coordination.

SMTP servers

Ensure timely communication with your users through swift email notifications and reports by configuring an SMTP server with specified authentication settings.

Proxy server

Enable secure outbound connectivity for DDI Central by configuring a forward proxy—ensuring access to API calls, cloud services, and external DNS without breaching firewall policies.

NTP servers

Ensure consistent time sync across your DNS and DHCP infrastructure by centrally managing NTP servers within DDI Central.

Scheduled DNS and DHCP objects

Set up schedules to create or modify DHCP scopes and DNS records, enabling network administrators to plan and rollout network configurations at predetermined times for maintaining uninterrupted network services outside of regular business hours.

Management UI Console Failover-Hot Standby Engine

Ensure high availability of core management operations with Hot Standby support for DDI Central’s Management UI Console—seamlessly maintaining continuity during main console outages.

High Availability Setup (Linux Only)

Ensure uninterrupted DHCP and DNS services with a resilient Linux-based HA setup designed for failover, redundancy, and zero service downtime.

Query and lease forecasting

Forecast DNS query load and DHCP lease trends to anticipate traffic spikes and subnet exhaustion. Plan capacity proactively with predictive models that strengthen availability and prevent service slowdowns.

Why DDI Central is the
heart of enterprise
networking

✅ Hassle-free onboarding

Automate the discovery and integration of devices into your network with zero-touch provisioning.

✅ Multi-branch architecture

Deploy and scale branch-by-branch strategies tailored to distributed enterprises. Each branch can operate independently while being centrally managed. This ensures consistency in DNS and DHCP configurations across all sites while allowing you to monitor and optimize IP address usage in real time.

✅ Script-free automations

Eliminate the reliance on complex scripts, traditional codes for routine tasks. With DDI Central’s powerful configurable automations, even entry-level administrators can handle IP assignments, DHCP scope changes, and DNS updates, freeing up senior IT staff to focus on strategic initiatives.

✅ Effortless IPv6 and dual-stack support

Enable scalable, high-density network connections while ensuring future-ready infrastructure and seamless legacy system management.

✅ A software-only overlay

No hardware dependencies—deploy effortlessly over existing DNS and DHCP clusters.

✅ Built-in resilience

Use built-in alerts, auditing, and failover setups, for proactive network management to ensure high uptime and compliance.

✅ Role-based access control

Define granular permissions and secure logins with SAML, LDAP, and 2FA (TOTPs).

✅ Multilayered DNS security

Protect your network against DDoS attacks and block malicious domains with built-in DNS firewall configurations such as response rate limiting, response policy zones, and more.

✅ DNSSEC protection

Ensure data integrity and authenticity by preventing DNS spoofing and cache poisoning through cryptographic signing.

✅ Secure Emails

Establish robust defenses against phishing and whaling attacks by enforcing email authentication policies with SPF, DMARC, and DKIM via dedicated TXT records in the domain's DNS settings.

✅ Manage records and the zone configurations of authoritative zones and Windows Active Directory zones.

✅ Manage special type of zones including response policy zones, zone forwarders, and stub zones.

✅ Redirect zone traffic to custom destination IPs using Views or Zone Scopes coupled with DNS query resolution policies

✅ Leverage rich visualizations to analyze domain performance, track host-domain interactions, detect unusual DNS query spikes, and proactively block threats like malicious domains, botnets, and unauthorized access attempts.

✅ Get effortless dynamic updates with DDNS for devices or users joining and rejoining the network.

✅ Enhanced query analytics with detailed visualizations of traffic patterns and domain performance.

✅ Utilize advanced DNS tools like recursion, forwarding, and DNS scavenging.

✅ Enable precise network segmentation with a variety of DHCP scopes, like Subnets, Static subnets, multi-cast subnets, DHCP reservations, VLANs, and supernets.

✅ Secure your network with rogue DHCP server detection and MAC address filtering.

✅ Automate IP allocations with DHCP fingerprinting policies for optimal lease times.

✅ Automate processes like renewing IP leases or reclaiming unused addresses.

✅ Gain insights into lease distribution patterns and historical data for effective IP planning.

✅ Set standard DHCP options or create custom options tailored to your network’s complexities.

✅ Define vendor and user classes to streamline IP assignment and policy enforcement.

✅ Visualize IP resource availability and utilization with real-time insights.

✅ Map IP-MAC identities for better device management and user analysis.

✅ Track the lease history of IPs and and troubleshoot network issues with ease.

✅ Track the entire lifecycle of IP resources to avoid duplications, conflicts, and inefficiencies.

✅ Monitor the dynamically provisioned DNS records for a leased IP ensuring accurate and up-to-date hostname resolution for devices and services.

✅ Analyze live DNS query analytics of a leased IP for security audits, anomaly detection, and performance monitoring.

✅ Gain vendor insights for an IP over time to track device usage patterns, optimize procurement, and enhance security stratergies.

choose DDI Central for your Microsoft DNS and DHCP servers

Agentless connection and
management

Advanced DNS, DHCP and
IP discovery

Centralized and contextualized
visibility

Robust scalability for
remote sites

Policy-based automations

Comprehensive reports and
analytics

Built-in failover support

Defense-in-depth security

For better implementation experience, and tailored solutions that's unique to your business.

Upgrade to a Fully Managed Security Posture

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

24/7 Proactive Security & Threat Mitigation

Our TOC operates around the clock to monitor your endpoints. We don’t just send you alerts; we actively investigate, validate, and remediate threats before they can impact your operations. This includes vulnerability management, patch deployment, and enforcing security configurations across your entire fleet of devices.

Expert Management & Optimization

Your Endpoint Central platform will be managed and optimized by certified engineers who live and breathe this technology. We handle all software deployments, policy configurations, and routine maintenance, ensuring the tool is always performing at its peak and aligned with the latest security best practices.

Strategic Reporting & Visibility

Move beyond raw data. We provide you with clear, executive-level monthly reports that translate technical activity into business-relevant insights. Understand your security posture, see the threats we’ve neutralized, and demonstrate compliance with ease.

We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.
We’ve been redefining IT for enterprises, excellence in every solution.

How KIDAN Works with You

Choose the Model That Fits You Best 

We don’t just provide software we partner with you to ensure it delivers real, lasting value. Whether you’re looking for light-touch guidance or full-scale operational support, we offer flexible service models tailored to your needs. 

License + Expert Guidance

Start with the right license and unlock full value.
Already have the tool or just getting started? We’ll help you provision the right licenses and guide you to unlock the full potential of your investment. Think of us as your strategic advisor always available, never intrusive.

Implementation & Onboarding

We’ll help you set up, onboard, and train your team.

We’ll help you set up, onboard, and train your team.Need help getting up and running? We’re with you every step of the way from setup and configuration to onboarding and training. Our experts ensure your team is confident, capable, and ready to go.

Fully Managed Service

We manage everything so you don’t have to. 

Prefer to stay hands-off? Let us run the tool for you. We’ll handle everything monitoring, maintenance, updates, and optimization so you can focus on what matters most: your
business.

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

ManageEngine DDI Central provides a unified view of our entire network infrastructure. The ability to manage DNS, DHCP, and IP addresses from a single console has significantly reduced our manual overhead and eliminated IP conflicts across our global sites.

David Whitfield,
IT customer services manager,
F4 IT Services

Schedule a personalized demo

By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Your Questions, Answered with Clarity.

Direct answers to the most common strategic, technical, and commercial questions
about Endpoint Central.

Currently, DDI Central does not support Microsoft DNS and DHCP servers.

The available installations of DDI Central are designed for Linux systems. For alternative solutions, please contact support at [email protected].

DDI Central is specifically tailored for deployment on Linux and Redhat-based operating systems, including CentOS, Linux OS, Ubuntu, Debian and Fedora.

DDI Central is currently available for direct installation, with plans to integrate API support in the roadmap.

While DDI Central is currently an on-premise solution, a cloud offering is in our roadmap. Currently, it effectively manages both internal and external server clusters, including those accessible via VPN, point-to-point connections, private networks connected through MPLS services from ISPs, and SD-WANs.

1 Minute Guided Tour of
 DDI Central

For better implementation experience, and tailored solutions that's unique to your business.

ManageEngine DDI Central provides a unified view of our entire network infrastructure. The ability to manage DNS, DHCP, and IP addresses from a single console has significantly reduced our manual overhead and eliminated IP conflicts across our global sites.

David Whitfield,
IT customer services manager,
F4 IT Services

Schedule a personalized demo

By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Your Questions, Answered with Clarity.

Direct answers to the most common strategic, technical, and commercial questions
about Endpoint Central.

Currently, DDI Central does not support Microsoft DNS and DHCP servers.

The available installations of DDI Central are designed for Linux systems. For alternative solutions, please contact support at [email protected].

DDI Central is specifically tailored for deployment on Linux and Redhat-based operating systems, including CentOS, Linux OS, Ubuntu, Debian and Fedora.

DDI Central is currently available for direct installation, with plans to integrate API support in the roadmap.

While DDI Central is currently an on-premise solution, a cloud offering is in our roadmap. Currently, it effectively manages both internal and external server clusters, including those accessible via VPN, point-to-point connections, private networks connected through MPLS services from ISPs, and SD-WANs.

All Features

DNS query and response analytics

Gain real-time insights into your network’s DNS traffic to identify potential security threats, analyze and optimize zone performance, and proactively troubleshoot issues within your network.

DNS zone management

Leverage the zone editor tool to accurately map or update the zone data for the DNS records of a domain. Enhance administrators’ understanding of the structure and relationships within a specific zone for smooth zone management.

DNS aging and scavenging

Streamline regular DNS maintenance by automating the timely identification and removal of stale records, ensuring a reliable, up-to-date DNS infrastructure.

DNS monitors

Associate DNS monitors with DNS zone records to monitor them continuously with TCP and PING checks to validate uptime and reachability. Spot resolution failures instantly, ensuring consistent query responses across all hosted zones.

DNS64

Enable smooth communication between IPv6-only clients and IPv4-only DNS servers by dynamically synthesizing and delivering AAAA records that combine a special IPv6 prefix with the original IPv4 resources, ensuring a cohesive, inclusive network environment.

Zone versioning

Create zone backups across both Windows and Linux clusters with versioned snapshots for safe, consistent DNS recovery. Roll back confidently to maintain operational continuity with reliable version control that preserves DNS stability during migrations or updates.

DNS threat intelligence

Block malicious domains in real time with DNS threat intelligence by integrating vetted threat feeds from ManageEngine CloudDNS, premium cybersecurity vendors, or custom STIX/TAXII sources—using reputation scores for proactive DNS-layer defense.

Domain blocking

Boost security by prohibiting access to recognized collections of undesirable domains and customize redirection using personalized IP settings.

DNS Firewall Response Policy Zones (DFW) (RPZ)

Enforce DNS firewall decisions using Response Policy Zones (RPZ) to block, redirect, or sinkhole known-bad destinations—adding policy-based control at the DNS layer to stop malware callbacks and risky domains before they resolve.

DNSSEC with TSIG

Mitigate the risk of cache poisoning and manipulator-in-the-middle attacks by validating DNS responses through cryptographic signature verification, ensuring that end users receive only accurate, trustworthy DNS resources.

DNS Detection and Response (DDR)

Quarantine suspicious IPs and subnets in real time by blocking DNS queries and DHCP leases for compromised clients—preventing threat propagation at both DNS and DHCP layers.

DNS over TLS (DoT)/DNS over HTTPS (DoH)

Encrypt DNS traffic with DoT and DoH to protect user privacy and ensure data integrity—ideal for both enterprise-grade networks and privacy-focused environments.

Response Rate Limiting (RRL)

Protect your authoritative name servers by intelligently regulating response throttling to mitigate the impact of DNS amplification attacks, ensuring uninterrupted access for legitimate clients and upholding a well-balanced approach to security.

DHCP server management

Set up DHCP servers manually or discover configurations from your existing DHCP environment, including DHCP scope configurations, DHCP options, and DHCP failover setups for your IPv4 address space. Monitor DHCP servers’ network, IP, CPU, memory, and disk utilization from an intuitive dashboard to asses their load and performance.

DHCP fingerprinting

Customize IP resource allocation by granularly identifying, categorizing, and controlling the various types of devices connecting to your network. Provide targeted configurations, enforce tailored compliance policies and access privileges, and streamline troubleshooting based on the device’s type, OS, and manufacturer.

Pre-boot execution environments

Create and clone templates to enable devices to autonomously acquire IP addresses, initiate boot processes, and seamlessly integrate into your network.

Rogue DHCP server detection

Quickly identify and isolate rogue DHCP servers with timely email alerts, leveraging real-time monitoring and automated IP inventory reconciliation to ensure a secure, compliant network environment.

Static subnet and lease management

Simplify IP management for critical devices requiring fixed IP addresses by managing static leases and subnets. Create custom fields and directly import static leases from spreadsheets into designated fields without setting up static subnets.

DHCP templates

Quickly segment and manage DHCP clients at scale with prebuilt templates for Vendor and Client Identifiers—automatically group devices by OS, manufacturer, or custom attributes for targeted IP allocation and policy-driven DHCP configurations.

Network IP address space insights

Gain comprehensive visibility into IP address utilization and availability across diverse networks and VLANs within your organization. Analyze the patterns of IP distribution among various hardware vendors and take control by directly allocating fixed addresses for hosts, ensuring precise management of IP resources.

Lease history insights

Probe the audit trail of current IP assignments in your network to access the DNS mapping and query analytics for a specific IP. Track and analyze an IP’s transitions over time to identify its association with specific devices, aiding in efficient troubleshooting and ensuring compliance.

IP-MAC identity mapping

Access user information related to the network and end-host devices and analyze users’ consumption of IP resources. Streamline change management and swiftly mitigate and troubleshoot network issues by following a user-centric approach.

AWS cloud integration

Correlate and visualize AWS network assets—like EC2, RDS, ECS, VPCs, and Subnets—within a single view for deeper cloud-native insights.

Multivendor DNS integration

Control your entire multicloud DNS landscape from one place—consolidate and sync zones across AWS, Azure, GCP, and Cloudflare.

Domain Creation with bidirectional Sync

Provision new zones and domains across cloud providers directly from DDI Central—with automatic two-way synchronization to ensure changes made in DDI Central or the provider stay fully aligned.

Unified DNS record control

Create, edit, and delete DNS records across multiple providers from a single platform, with complete audit trails for every operation.

SAML authentication

Simplify the login process with centralized authentication policies from identity providers like Okta, Ping, Onelogin, and Microsoft Azure through SAML (Security Assertion Markup Language) authentication.

LDAP authentication

Centralize user authentication, easily manage user accounts, and enforce security policies across your distributed Microsoft network infrastructure using LDAP (Lightweight Directory Access Protocol) and LDAPS (LDAP over SSL) as a Single Sign-On (SSO) solution to authenticate users against a centralized directory, such as Active Directory.

Scheduled reports

Set up scheduled reports for DHCP subnets specifically for administrators to provide an analytical visual snapshot of subnet capacity. This aids in advanced capacity planning and monitoring IP utilization thresholds over time. Additionally, the scheduled reports on DNS zones offer periodic updates on domain queries, helping admins to understand traffic patterns, as well as user behavior and preferences.

Role-based access controls

Elevate security with precise permissions tailored to individual roles for DNS domains and DHCP scopes, ensuring efficient, secure access management for DDI clusters.

Contact groups

Organize and manage contacts for streamlined communication within each DDI cluster. Ensure that critical messages reach the right users promptly, enhancing overall responsiveness and coordination.

SMTP servers

Ensure timely communication with your users through swift email notifications and reports by configuring an SMTP server with specified authentication settings.

Proxy server

Enable secure outbound connectivity for DDI Central by configuring a forward proxy—ensuring access to API calls, cloud services, and external DNS without breaching firewall policies.

NTP servers

Ensure consistent time sync across your DNS and DHCP infrastructure by centrally managing NTP servers within DDI Central.

Scheduled DNS and DHCP objects

Set up schedules to create or modify DHCP scopes and DNS records, enabling network administrators to plan and rollout network configurations at predetermined times for maintaining uninterrupted network services outside of regular business hours.

Management UI Console Failover-Hot Standby Engine

Ensure high availability of core management operations with Hot Standby support for DDI Central’s Management UI Console—seamlessly maintaining continuity during main console outages.

High Availability Setup (Linux Only)

Ensure uninterrupted DHCP and DNS services with a resilient Linux-based HA setup designed for failover, redundancy, and zero service downtime.

Query and lease forecasting

Forecast DNS query load and DHCP lease trends to anticipate traffic spikes and subnet exhaustion. Plan capacity proactively with predictive models that strengthen availability and prevent service slowdowns.

Why DDI Central is the
heart of enterprise
networking

✅ Hassle-free onboarding

Automate the discovery and integration of devices into your network with zero-touch provisioning.

✅ Multi-branch architecture

Deploy and scale branch-by-branch strategies tailored to distributed enterprises. Each branch can operate independently while being centrally managed. This ensures consistency in DNS and DHCP configurations across all sites while allowing you to monitor and optimize IP address usage in real time.

✅ Script-free automations

Eliminate the reliance on complex scripts, traditional codes for routine tasks. With DDI Central’s powerful configurable automations, even entry-level administrators can handle IP assignments, DHCP scope changes, and DNS updates, freeing up senior IT staff to focus on strategic initiatives.

✅ Effortless IPv6 and dual-stack support

Enable scalable, high-density network connections while ensuring future-ready infrastructure and seamless legacy system management.

✅ A software-only overlay

No hardware dependencies—deploy effortlessly over existing DNS and DHCP clusters.

✅ Built-in resilience

Use built-in alerts, auditing, and failover setups, for proactive network management to ensure high uptime and compliance.

✅ Role-based access control

Define granular permissions and secure logins with SAML, LDAP, and 2FA (TOTPs).

✅ Multilayered DNS security

Protect your network against DDoS attacks and block malicious domains with built-in DNS firewall configurations such as response rate limiting, response policy zones, and more.

✅ DNSSEC protection

Ensure data integrity and authenticity by preventing DNS spoofing and cache poisoning through cryptographic signing.

✅ Secure Emails

Establish robust defenses against phishing and whaling attacks by enforcing email authentication policies with SPF, DMARC, and DKIM via dedicated TXT records in the domain's DNS settings.

✅ Manage records and the zone configurations of authoritative zones and Windows Active Directory zones.

✅ Manage special type of zones including response policy zones, zone forwarders, and stub zones.

✅ Redirect zone traffic to custom destination IPs using Views or Zone Scopes coupled with DNS query resolution policies

✅ Leverage rich visualizations to analyze domain performance, track host-domain interactions, detect unusual DNS query spikes, and proactively block threats like malicious domains, botnets, and unauthorized access attempts.

✅ Get effortless dynamic updates with DDNS for devices or users joining and rejoining the network.

✅ Enhanced query analytics with detailed visualizations of traffic patterns and domain performance.

✅ Utilize advanced DNS tools like recursion, forwarding, and DNS scavenging.

✅ Enable precise network segmentation with a variety of DHCP scopes, like Subnets, Static subnets, multi-cast subnets, DHCP reservations, VLANs, and supernets.

✅ Secure your network with rogue DHCP server detection and MAC address filtering.

✅ Automate IP allocations with DHCP fingerprinting policies for optimal lease times.

✅ Automate processes like renewing IP leases or reclaiming unused addresses.

✅ Gain insights into lease distribution patterns and historical data for effective IP planning.

✅ Set standard DHCP options or create custom options tailored to your network’s complexities.

✅ Define vendor and user classes to streamline IP assignment and policy enforcement.

✅ Visualize IP resource availability and utilization with real-time insights.

✅ Map IP-MAC identities for better device management and user analysis.

✅ Track the lease history of IPs and and troubleshoot network issues with ease.

✅ Track the entire lifecycle of IP resources to avoid duplications, conflicts, and inefficiencies.

✅ Monitor the dynamically provisioned DNS records for a leased IP ensuring accurate and up-to-date hostname resolution for devices and services.

✅ Analyze live DNS query analytics of a leased IP for security audits, anomaly detection, and performance monitoring.

✅ Gain vendor insights for an IP over time to track device usage patterns, optimize procurement, and enhance security stratergies.

choose DDI Central for your Microsoft DNS and DHCP servers

Agentless connection and
management

Advanced DNS, DHCP and
IP discovery

Centralized and contextualized
visibility

Robust scalability for
remote sites

Policy-based automations

Comprehensive reports and
analytics

Built-in failover support

Defense-in-depth security

For better implementation experience, and tailored solutions that's unique to your business.

Upgrade to a Fully Managed Security Posture

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

24/7 Proactive Security & Threat Mitigation

Our TOC operates around the clock to monitor your endpoints. We don’t just send you alerts; we actively investigate, validate, and remediate threats before they can impact your operations. This includes vulnerability management, patch deployment, and enforcing security configurations across your entire fleet of devices.

Expert Management & Optimization

Your Endpoint Central platform will be managed and optimized by certified engineers who live and breathe this technology. We handle all software deployments, policy configurations, and routine maintenance, ensuring the tool is always performing at its peak and aligned with the latest security best practices.

Strategic Reporting & Visibility

Move beyond raw data. We provide you with clear, executive-level monthly reports that translate technical activity into business-relevant insights. Understand your security posture, see the threats we’ve neutralized, and demonstrate compliance with ease.

How KIDAN Works with You

Choose the Model That Fits You Best 

We don’t just provide software we partner with you to ensure it delivers real, lasting value. Whether you’re looking for light-touch guidance or full-scale operational support, we offer flexible service models tailored to your needs. 

License + Expert Guidance

Start with the right license and unlock full value.
Already have the tool or just getting started? We’ll help you provision the right licenses and guide you to unlock the full potential of your investment. Think of us as your strategic advisor always available, never intrusive.

Implementation & Onboarding

We’ll help you set up, onboard, and train your team.

We’ll help you set up, onboard, and train your team.Need help getting up and running? We’re with you every step of the way from setup and configuration to onboarding and training. Our experts ensure your team is confident, capable, and ready to go.

Fully Managed Service

We manage everything so you don’t have to. 

Prefer to stay hands-off? Let us run the tool for you. We’ll handle everything monitoring, maintenance, updates, and optimization so you can focus on what matters most: your
business.

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

How KIDAN Works with You

Choose the Model That Fits You Best 

We don’t just provide software we partner with you to ensure it delivers real, lasting value. Whether you’re looking for light-touch guidance or full-scale operational support, we offer flexible service models tailored to your needs. 

License + Expert Guidance

Start with the right license and unlock full value.
Already have the tool or just getting started? We’ll help you provision the right licenses and guide you to unlock the full potential of your investment. Think of us as your strategic advisor always available, never intrusive.

Implementation & Onboarding

We’ll help you set up, onboard, and train your team.

We’ll help you set up, onboard, and train your team.Need help getting up and running? We’re with you every step of the way from setup and configuration to onboarding and training. Our experts ensure your team is confident, capable, and ready to go.

Fully Managed Service

We manage everything so you don’t have to. 

Prefer to stay hands-off? Let us run the tool for you. We’ll handle everything monitoring, maintenance, updates, and optimization so you can focus on what matters most: your
business.

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

ManageEngine DDI Central provides a unified view of our entire network infrastructure. The ability to manage DNS, DHCP, and IP addresses from a single console has significantly reduced our manual overhead and eliminated IP conflicts across our global sites.

David Whitfield,
IT customer services manager,
F4 IT Services

Schedule a personalized demo

By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Your Questions, Answered with Clarity.

Direct answers to the most common strategic, technical, and commercial questions
about Endpoint Central.

Currently, DDI Central does not support Microsoft DNS and DHCP servers.

The available installations of DDI Central are designed for Linux systems. For alternative solutions, please contact support at [email protected].

DDI Central is specifically tailored for deployment on Linux and Redhat-based operating systems, including CentOS, Linux OS, Ubuntu, Debian and Fedora.

DDI Central is currently available for direct installation, with plans to integrate API support in the roadmap.

While DDI Central is currently an on-premise solution, a cloud offering is in our roadmap. Currently, it effectively manages both internal and external server clusters, including those accessible via VPN, point-to-point connections, private networks connected through MPLS services from ISPs, and SD-WANs.

DDI Central Editions

License components

Professional

Enterprise

Starting Price

$3199*

$6199*

Number of DNS Servers**

Maximum limit: 

Manage upto 6 DNS servers

Maximum limit: 

Manage upto 15 DNS servers

Number of DHCP Servers**

Maximum limit: 

Manage upto 4 DHCP servers

Maximum limit: 

Manage upto 10 DHCP servers

Number of NTP Servers**

Maximum limit: 

Manage upto 3 NTP servers

Maximum limit: 

Manage upto 5 NTP servers

Number of Admins/Operator Users**

2

5

Number of Zones**

15

100

Number of Subnets**

15

100

DNS Threat Intelligence + DNS Detection and Response (DDR)**


X Can be purchased as add-on

Management UI Console Failover-Hot Standby Engine **

X Can be purchased as add-on

In-Built + Remote Database Configuration

For better implementation experience, and tailored solutions that's unique to your business.

Upgrade to a Fully Managed Security Posture

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

24/7 Proactive Security & Threat Mitigation

Our TOC operates around the clock to monitor your endpoints. We don’t just send you alerts; we actively investigate, validate, and remediate threats before they can impact your operations. This includes vulnerability management, patch deployment, and enforcing security configurations across your entire fleet of devices.

Expert Management & Optimization

Your Endpoint Central platform will be managed and optimized by certified engineers who live and breathe this technology. We handle all software deployments, policy configurations, and routine maintenance, ensuring the tool is always performing at its peak and aligned with the latest security best practices.

Strategic Reporting & Visibility

Move beyond raw data. We provide you with clear, executive-level monthly reports that translate technical activity into business-relevant insights. Understand your security posture, see the threats we’ve neutralized, and demonstrate compliance with ease.

How KIDAN Works with You

Choose the Model That Fits You Best 

We don’t just provide software we partner with you to ensure it delivers real, lasting value. Whether you’re looking for light-touch guidance or full-scale operational support, we offer flexible service models tailored to your needs. 

License + Expert Guidance

Start with the right license and unlock full value.
Already have the tool or just getting started? We’ll help you provision the right licenses and guide you to unlock the full potential of your investment. Think of us as your strategic advisor always available, never intrusive.

Implementation & Onboarding

We’ll help you set up, onboard, and train your team.

We’ll help you set up, onboard, and train your team.Need help getting up and running? We’re with you every step of the way from setup and configuration to onboarding and training. Our experts ensure your team is confident, capable, and ready to go.

Fully Managed Service

We manage everything so you don’t have to. 

Prefer to stay hands-off? Let us run the tool for you. We’ll handle everything monitoring, maintenance, updates, and optimization so you can focus on what matters most: your
business.

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

ManageEngine DDI Central provides a unified view of our entire network infrastructure. The ability to manage DNS, DHCP, and IP addresses from a single console has significantly reduced our manual overhead and eliminated IP conflicts across our global sites.

David Whitfield,
IT customer services manager,
F4 IT Services

Schedule a personalized demo

By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Your Questions, Answered with Clarity.

Direct answers to the most common strategic, technical, and commercial questions
about Endpoint Central.

Currently, DDI Central does not support Microsoft DNS and DHCP servers.

The available installations of DDI Central are designed for Linux systems. For alternative solutions, please contact support at [email protected].

DDI Central is specifically tailored for deployment on Linux and Redhat-based operating systems, including CentOS, Linux OS, Ubuntu, Debian and Fedora.

DDI Central is currently available for direct installation, with plans to integrate API support in the roadmap.

While DDI Central is currently an on-premise solution, a cloud offering is in our roadmap. Currently, it effectively manages both internal and external server clusters, including those accessible via VPN, point-to-point connections, private networks connected through MPLS services from ISPs, and SD-WANs.

Pricing Plans Tailored to Fit Your Business

DDI Central – non-binding prices

For better implementation experience, and tailored solutions that's unique to your business.

Upgrade to a Fully Managed Security Posture

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

24/7 Proactive Security & Threat Mitigation

Our TOC operates around the clock to monitor your endpoints. We don’t just send you alerts; we actively investigate, validate, and remediate threats before they can impact your operations. This includes vulnerability management, patch deployment, and enforcing security configurations across your entire fleet of devices.

Expert Management & Optimization

Your Endpoint Central platform will be managed and optimized by certified engineers who live and breathe this technology. We handle all software deployments, policy configurations, and routine maintenance, ensuring the tool is always performing at its peak and aligned with the latest security best practices.

Strategic Reporting & Visibility

Move beyond raw data. We provide you with clear, executive-level monthly reports that translate technical activity into business-relevant insights. Understand your security posture, see the threats we’ve neutralized, and demonstrate compliance with ease.

How KIDAN Works with You

Choose the Model That Fits You Best 

We don’t just provide software we partner with you to ensure it delivers real, lasting value. Whether you’re looking for light-touch guidance or full-scale operational support, we offer flexible service models tailored to your needs. 

License + Expert Guidance

Start with the right license and unlock full value.
Already have the tool or just getting started? We’ll help you provision the right licenses and guide you to unlock the full potential of your investment. Think of us as your strategic advisor always available, never intrusive.

Implementation & Onboarding

We’ll help you set up, onboard, and train your team.

We’ll help you set up, onboard, and train your team.Need help getting up and running? We’re with you every step of the way from setup and configuration to onboarding and training. Our experts ensure your team is confident, capable, and ready to go.

Fully Managed Service

We manage everything so you don’t have to. 

Prefer to stay hands-off? Let us run the tool for you. We’ll handle everything monitoring, maintenance, updates, and optimization so you can focus on what matters most: your
business.

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

ManageEngine DDI Central provides a unified view of our entire network infrastructure. The ability to manage DNS, DHCP, and IP addresses from a single console has significantly reduced our manual overhead and eliminated IP conflicts across our global sites.

David Whitfield,
IT customer services manager,
F4 IT Services

Schedule a personalized demo

By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Your Questions, Answered with Clarity.

Direct answers to the most common strategic, technical, and commercial questions
about Endpoint Central.

Currently, DDI Central does not support Microsoft DNS and DHCP servers.

The available installations of DDI Central are designed for Linux systems. For alternative solutions, please contact support at [email protected].

DDI Central is specifically tailored for deployment on Linux and Redhat-based operating systems, including CentOS, Linux OS, Ubuntu, Debian and Fedora.

DDI Central is currently available for direct installation, with plans to integrate API support in the roadmap.

While DDI Central is currently an on-premise solution, a cloud offering is in our roadmap. Currently, it effectively manages both internal and external server clusters, including those accessible via VPN, point-to-point connections, private networks connected through MPLS services from ISPs, and SD-WANs.

ManageEngine DDI Central provides a unified view of our entire network infrastructure. The ability to manage DNS, DHCP, and IP addresses from a single console has significantly reduced our manual overhead and eliminated IP conflicts across our global sites.

David Whitfield,
IT customer services manager,
F4 IT Services

Schedule a personalized demo

By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

How KIDAN Works with You

Choose the Model That Fits You Best 

We don’t just provide software we partner with you to ensure it delivers real, lasting value. Whether you’re looking for light-touch guidance or full-scale operational support, we offer flexible service models tailored to your needs. 

License + Expert Guidance

Start with the right license and unlock full value.
Already have the tool or just getting started? We’ll help you provision the right licenses and guide you to unlock the full potential of your investment. Think of us as your strategic advisor always available, never intrusive.

Implementation & Onboarding

We’ll help you set up, onboard, and train your team.

We’ll help you set up, onboard, and train your team.Need help getting up and running? We’re with you every step of the way from setup and configuration to onboarding and training. Our experts ensure your team is confident, capable, and ready to go.

Fully Managed Service

We manage everything so you don’t have to. 

Prefer to stay hands-off? Let us run the tool for you. We’ll handle everything monitoring, maintenance, updates, and optimization so you can focus on what matters most: your
business.

Introducing KIDAN’s Endpoint Management and Security as a Service powered by our 24/7 Swiss-led Technology Operations Center (TOC)

Your Questions, Answered with Clarity.

Direct answers to the most common strategic, technical, and commercial questions
about Endpoint Central.

Currently, DDI Central does not support Microsoft DNS and DHCP servers.

The available installations of DDI Central are designed for Linux systems. For alternative solutions, please contact support at [email protected].

DDI Central is specifically tailored for deployment on Linux and Redhat-based operating systems, including CentOS, Linux OS, Ubuntu, Debian and Fedora.

DDI Central is currently available for direct installation, with plans to integrate API support in the roadmap.

While DDI Central is currently an on-premise solution, a cloud offering is in our roadmap. Currently, it effectively manages both internal and external server clusters, including those accessible via VPN, point-to-point connections, private networks connected through MPLS services from ISPs, and SD-WANs.

Datasheet

DDI Central Datasheet

Brochure

DDI Central Brochure

WhitePaper

DDI Central WhitePaper

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Join 100+ IT Leaders at KIDANVerse

Be part of the first edition.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details For Pricing

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.

Quick details before your demo

Almost there – a few quick details first.