【24h】

A Paged Domain Name System for Query Privacy

机译:用于查询隐私的分页域名系统

获取原文

摘要

The lack of privacy in DNS and DNSSEC is a problem that has only recently begun to see widespread attention by the Internet and research communities, and the solutions proposed so far only look at a narrow slice of the design space. In this paper we investigate a new approach for a privacy-preserving DNS mechanism that hides query information from root name servers and TLD registries. Our architecture lets TLD registries group the DNS records in their zones together into pages. Resolvers cache all pages locally, and retrieve only small incremental updates to optimize performance. We show that this strategy is particularly effective given the relatively static nature of TLD zone records. We analyze the privacy guarantees to assess the potential and limitations of our approach; we also evaluate the memory overhead for a resolver, and obtain feasibility guarantees through a prototype implementation of the new functionalities for resolvers and registries.
机译:DNS和DNSSEC缺乏隐私是一个问题,直到最近才开始受到Internet和研究社区的广泛关注,到目前为止,提出的解决方案仅关注设计空间的一小部分。在本文中,我们研究了一种保护隐私的DNS机制的新方法,该机制可隐藏来自根名称服务器和TLD注册表的查询信息。我们的体系结构允许TLD注册管理机构将其区域中的DNS记录分组到页面中。解析器在本地缓存所有页面,并且仅检索小的增量更新以优化性能。我们表明,鉴于TLD区域记录的相对静态性质,该策略特别有效。我们分析隐私保证,以评估我们方法的潜力和局限性;我们还评估了解析器的内存开销,并通过针对解析器和注册表的新功能的原型实现来获得可行性保证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号