【24h】

Security vulnerabilities in DNS and DNSSEC

机译:DNS和DNSSEC中的安全漏洞

获取原文

摘要

We present an analysis of security vulnerabilities in the Domain Name System (DNS) and the DNS Security Extensions (DNSSEC). DNS data that is provided by name servers lacks support for data origin authentication and data integrity. This makes DNS vulnerable to man in the middle (MITM) attacks, as well as a range of other attacks. To make DNS more robust, DNSSEC was proposed by the Internet Engineering Task Force (IETF). DNSSEC provides data origin authentication and integrity by using digital signatures. Although DNSSEC provides security for DNS data, it suffers from serious security and operational flaws. We discuss the DNS and DNSSEC architectures, and consider the associated security vulnerabilities.
机译:我们对域名系统(DNS)和DNS安全扩展(DNSSEC)的安全漏洞进行了分析。名称服务器提供的DNS数据缺少对数据原始身份验证和数据完整性的支持。这使得DNS易受中间(MITM)攻击的人,以及一系列其他攻击。为了使DNS更加强大,通过互联网工程任务力(IETF)提出了DNSSEC。 DNSSEC通过使用数字签名提供数据来源身份验证和完整性。虽然DNSSEC为DNS数据提供了安全性,但它遭受严重的安全和操作缺陷。我们讨论DNS和DNSSEC架构,并考虑相关的安全漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号