Name Dependency and Domain Name Resolution Risk Assessment

The Domain name system (DNS) is crucial to Internet services. Previous studies have pointed out that the name dependency in domain name resolution poses a risk to the security of DNS. In this paper, we present measurement results from a dataset containing resolution paths of domain names collected f...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:IEEE eTransactions on network and service management 2022-09, Vol.19 (3), p.3413-3424
Hauptverfasser: Xu, Haiyan, Zhang, Zhaoxin, Yan, Jianen, Chai, Tingting
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The Domain name system (DNS) is crucial to Internet services. Previous studies have pointed out that the name dependency in domain name resolution poses a risk to the security of DNS. In this paper, we present measurement results from a dataset containing resolution paths of domain names collected from a large-scale survey. This dataset is used to research the effect of the name dependency on the DNS, reaffirm findings in published work, and notice some significant differences. When name resolution spans multiple domains, it will lead to name dependency and make the resolution process more complex. Furthermore, we assess the risk of domain name resolution: a name resolution fault analysis model and the calculation of the failure probability of name resolution is proposed. The model can identify the key server sets that lead to the resolution failure of a domain name, and quantify the failure probability of its resolution. This research provides a breakthrough point for guiding the configuration, management, deployment, and upgrading of the DNS.
ISSN:1932-4537
1932-4537
DOI:10.1109/TNSM.2022.3165535