Anonymous resolution of DNS queries

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The use of the DNS as the underlying technology of new resolution name services can lead to privacy violations. The exchange of data between servers and clients flows without protection. Such an information can be captured by service providers and eventually sold with malicious purposes (i.e., spamming, phishing, etc.). A motivating example is the use of DNS on VoIP services for the translation of traditional telephone numbers into Internet URLs. We analyze in this paper the use of statistical noise for the construction of proper DNS queries. Our objective aims at reducing the risk that sensible data within DNS queries could be inferred by local and remote DNS servers. We evaluate the implementation of a proof-of-concept of our approach. We study the benefits and limitations of our proposal. A first limitation is the possibility of attacks against the integrity and authenticity of our queries by means of, for instance, man-in-the-middle or replay attacks. However, this limitation can be successfully solved combining our proposal together with the use of the DNSSEC (DNS Security extensions). We evaluate the impact of including this complementary countermeasure.

Original languageEnglish
Title of host publicationOn the Move to Meaningful Internet Systems
Subtitle of host publicationOTM 2008 - OTM 2008 Confederated International Conferences CoopIS, DOA, GADA, IS, and ODBASE 2008, Proceedings
PublisherSpringer Verlag
Pages987-1000
Number of pages14
EditionPART 2
ISBN (Print)3540888705, 9783540888703
DOIs
Publication statusPublished - 1 Jan 2008
Externally publishedYes
EventOTM 2008 Confederated International Conferences CoopIS, DOA, GADA, IS, and ODBASE 2008 - Monterrey, Mexico
Duration: 9 Nov 200814 Nov 2008

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
NumberPART 2
Volume5332 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

ConferenceOTM 2008 Confederated International Conferences CoopIS, DOA, GADA, IS, and ODBASE 2008
Country/TerritoryMexico
CityMonterrey
Period9/11/0814/11/08

Keywords

  • Anonymity
  • Domain name system
  • IT security
  • Privacy
  • Privacy information retrieval

Fingerprint

Dive into the research topics of 'Anonymous resolution of DNS queries'. Together they form a unique fingerprint.

Cite this