首页> 外文会议>International Conference on Passive and Active Measurement >A Peek into the DNS Cookie Jar An Analysis of DNS Cookie Use
【24h】

A Peek into the DNS Cookie Jar An Analysis of DNS Cookie Use

机译:一个偷看DNS饼干jar一个分析DNS cookie使用

获取原文

摘要

The Domain Name System (DNS) has been frequently abused for Distributed Denial of Service (DDoS) attacks and cache poisoning because it relies on the User Datagram Protocol (UDP). Since UDP is connection-less, it is trivial for an attacker to spoof the source of a DNS query or response. DNS Cookies, a protocol standardized in 2016, add pseudo-random values to DNS packets to provide identity management and prevent spoofing attacks. In this paper, we present the first study measuring the deployment of DNS Cookies in nearly all aspects of the DNS architecture. We also provide an analysis of the current benefits of DNS Cookies and the next steps for stricter deployment. Our findings show that cookie use is limited to less than 30% of servers and 10% of recursive clients. We also find several configuration issues that could lead to substantial problems if cookies were strictly required. Overall, DNS Cookies provide limited benefit in a majority of situations, and, given current deployment, do not prevent DDoS or cache poisoning attacks.
机译:域名系统(DNS)经常被滥用用于分布式拒绝服务(DDOS)攻击和缓存中毒,因为它依赖于用户数据报协议(UDP)。由于UDP较少,因此攻击者欺骗DNS查询或响应的来源是微不足道的。 DNS Cookie,一个协议标准化2016年,将伪随机值添加到DNS数据包,以提供身份管理并防止欺骗攻击。在本文中,我们提供了第一研究测量DNS架构的几乎所有方面的DNS Cookie的部署。我们还提供了对DNS Cookie的当前优势以及更严格部署的下一步的分析。我们的研究结果表明,Cookie使用限制为不到30%的服务器和10%的递归客户。如果严格要求饼干,我们还会发现几个可能导致大量问题的配置问题。总体而言,DNS Cookie在大多数情况下为大多数情况提供有限的好处,并且给定当前部署,不要阻止DDOS或缓存中毒攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号