SwePub
Sök i LIBRIS databas

  Utökad sökning

id:"swepub:oai:DiVA.org:kau-94279"
 

Sökning: id:"swepub:oai:DiVA.org:kau-94279" > A Second Look at DN...

A Second Look at DNS QNAME Minimization

Magnusson, Jonathan (författare)
Karlstads universitet,Institutionen för matematik och datavetenskap (from 2013)
Müller, Moritz (författare)
SIDN Labs, NLD
Brunstrom, Anna, 1967- (författare)
Karlstads universitet,Institutionen för matematik och datavetenskap (from 2013)
visa fler...
Pulls, Tobias, 1985- (författare)
Karlstads universitet,Institutionen för matematik och datavetenskap (from 2013)
visa färre...
 (creator_code:org_t)
2023-03-10
2023
Engelska.
Ingår i: Passive and Active Measurement. - Cham : Springer. ; , s. 496-521
  • Konferensbidrag (refereegranskat)
Abstract Ämnesord
Stäng  
  • The Domain Name System (DNS) is a critical Internet infrastructure that translates human-readable domain names to IP addresses. It was originally designed over 35 years ago and multiple enhancements have since then been made, in particular to make DNS lookups more secure and privacy preserving. Query name minimization (qmin) was initially introduced in 2016 to limit the exposure of queries sent across DNS and thereby enhance privacy. In this paper, we take a look at the adoption of qmin, building upon and extending measurements made by De Vries et al. in 2018. We analyze qmin adoption on the Internet using active measurements both on resolvers used by RIPE Atlas probes and on open resolvers. Aside from adding more vantage points when measuring qmin adoption on open resolvers, we also increase the number of repetitions, which reveals conflicting resolvers – resolvers that support qmin for some queries but not for others. For the passive measurements at root and Top-Level Domain (TLD) name servers, we extend the analysis over a longer period of time, introduce additional sources, and filter out non-valid queries. Furthermore, our controlled experiments measure performance and result quality of newer versions of the qmin -enabled open source resolvers used in the previous study, with the addition of PowerDNS. Our results, using extended methods from previous work, show that the adoption of qmin has significantly increased since 2018. New controlled experiments also show a trend of higher number of packets used by resolvers and lower error rates in the DNS queries. Since qmin is a balance between performance and privacy, we further discuss the depth limit of minimizing labels and propose the use of a public suffix list for setting this limit.

Ämnesord

NATURVETENSKAP  -- Data- och informationsvetenskap (hsv//swe)
NATURAL SCIENCES  -- Computer and Information Sciences (hsv//eng)

Nyckelord

Internet protocols; Privacy-preserving techniques
Controlled experiment; Domain name system; Domain names; Human-readable; Internet infrastructure; Lookups; Minimisation; Performance; Privacy; QNAME minimization
Quality control
Computer Science
Datavetenskap

Publikations- och innehållstyp

ref (ämneskategori)
kon (ämneskategori)

Till lärosätets databas

Hitta mer i SwePub

Av författaren/redakt...
Magnusson, Jonat ...
Müller, Moritz
Brunstrom, Anna, ...
Pulls, Tobias, 1 ...
Om ämnet
NATURVETENSKAP
NATURVETENSKAP
och Data och informa ...
Artiklar i publikationen
Av lärosätet
Karlstads universitet

Sök utanför SwePub

Kungliga biblioteket hanterar dina personuppgifter i enlighet med EU:s dataskyddsförordning (2018), GDPR. Läs mer om hur det funkar här.
Så här hanterar KB dina uppgifter vid användning av denna tjänst.

 
pil uppåt Stäng

Kopiera och spara länken för att återkomma till aktuell vy