Title :
Cache Poisoning Detection Method for Improving Security of Recursive DNS
Author :
Ju, Yong Wan ; Song, Kwan Ho ; Lee, Eung Jae ; Shin, Yong Tae
Author_Institution :
Nat. Internet Dev. Agency of Korea
Abstract :
In this paper, we propose a new detection method for cache poisoning attack on the recursive DNS. The proposed method overcomes the weak-points of the previous researches such as DNSSEC and DoX system which are hierarchical or vertical additional deployments of several DNS servers, accordingly overall performance of the system is decreased and additional traffic cost is needed. That is to say, the proposed method sets forth independent cache poisoning detection method with the similar security level of DNSSEC, notwithstanding the improvement, there is little influence on DNS performance and additional traffic.
Keywords :
Internet; security of data; DNSSEC; DoX system; cache poisoning detection method; recursive DNS servers; security improvement; Computer crime; Costs; Cryptography; File servers; IP networks; Information security; National security; Toxicology; Web and internet services; Web server; Cache Poisoning Detection; DNS Security; Recursive DNS;
Conference_Titel :
Advanced Communication Technology, The 9th International Conference on
Conference_Location :
Gangwon-Do
Print_ISBN :
978-89-5519-131-8
DOI :
10.1109/ICACT.2007.358755