Title :
Research and implementation of DNSSEC monitoring system
Author :
Sun, Yu ; Liu, Ru Juan ; Liu, Yi
Author_Institution :
Comput. Sci. Dept., Beijing Univ. of Technol., Beijing, China
Abstract :
DNS is one of internet infrastructure, but there also exist a lot of security vulnerabilities in it. The DNSSEC drafted by IETF is replacing the DNS for enhancing the security. However, the characteristics of DNSSEC have led to failure of the old monitoring system partly. This paper based on study of the DNSSEC protocol implementation and deployment proposes a kind of constructing plan about domain name redirecting, recursive domain name server record and national DLV trust chain. Then we establish an effective monitoring system. Finally, the feasibility of this plan has been verified in a simulated environment.
Keywords :
Internet; protocols; security of data; system monitoring; DLV trust chain; DNSSEC monitoring system; DNSSEC protocol; IETF; Internet infrastructure; domain name system security; recursive domain name server; security enhancement; Authentication; Internet; Monitoring; Public key; Servers; Synchronization; DLV(DNSSEC Look-aside Validation); DNS; DNSSEC; Trust chain;
Conference_Titel :
Machine Learning and Cybernetics (ICMLC), 2010 International Conference on
Conference_Location :
Qingdao
Print_ISBN :
978-1-4244-6526-2
DOI :
10.1109/ICMLC.2010.5580489