Domain name system request processing method and device, electronic equipment and storage medium

The invention relates to the technical field of network security, and provides a domain name system request processing method and device, electronic equipment and a storage medium. The processing method comprises the following steps: in response to a DNS request, judging whether the DNS request is m...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: SHI GUOSHUI, LIU DONGXIN, WANG LAIFU, QIN YUE, HUANG DONGMEI
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention relates to the technical field of network security, and provides a domain name system request processing method and device, electronic equipment and a storage medium. The processing method comprises the following steps: in response to a DNS request, judging whether the DNS request is matched with a DNS tunnel blacklist or a DRDoS (Distributed Reflection Denial of Service) blacklist; if yes, carrying out current limiting processing on the DNS request; if not, querying a DNS server according to the DNS request, obtaining response data of the DNS server, returning the response data, and caching target response data of which the response state is that the domain name does not have NXDomain; and updating the DNS tunnel blacklist and/or the DRDoS blacklist according to the target response data. According to the method, the abnormal DNS request can be quickly identified according to the DNS blacklist, the flow limiting processing is carried out, the adverse effect of the abnormal request on the whole n