Title :
Enhancing DNS security using dynamic firewalling with network agents
Author :
Afonso, Joao ; Veiga, Pedro
Author_Institution :
Found. for Nat. Sci. Comput., Lisbon, Portugal
Abstract :
In this paper we propose a solution to strengthen the security of Domain Name System (DNS) servers associated with one or more Top Level Domains (TLD). In this way we intend to be able to reduce the security risk when using major internet services, based on DNS. The proposed solution has been developed and tested at FCCN, the TLD manager for the. PT domain. Through the implementation of network sensors that monitor the network in real-time, we are capable to dynamically prevent, detect or limit the scope of attempted intrusions or other types of occurrences to the DNS service. The platform relies heavily on cross-correlation allowing data from a particular sensor to be shared with the others. Administration tasks such as setting up alarms or performing statistical analysis are made through a web-based interface.
Keywords :
authorisation; computer network security; statistical analysis; DNS security; Web-based interface; domain name system; dynamic firewall; network agent; network sensor; statistical analysis; top level domain; Electronic mail; Fires; Internet; Monitoring; Security; Sensors; Servers; DNS; intrusion detection system; monitoring; real-time; risk; security;
Conference_Titel :
Computer Science and Information Systems (FedCSIS), 2011 Federated Conference on
Conference_Location :
Szczecin
Print_ISBN :
978-1-4577-0041-5
Electronic_ISBN :
978-83-60810-35-4