Skip to main navigation Skip to search Skip to main content

Dynamic DNS update security, based on cryptographically generated addresses and ID-based cryptography, in an IPv6 autoconfiguration context

  • Orange Labs
  • CNRS SAMOVAR UMR 5157

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

This paper proposes a new security method for protecting signalling for Domain Name System (DNS) architecture. That is, it makes secure DNS update messages for binding a Fully Qualified Domain Name (FQDN) of an IPv6 node and the IPv6 address of the node owning this FQDN. This method is based on the use of Cryptographically Generated Addresses (CGA) and IDBased Cryptography (IBC). Combination of these two techniques allows DNS server to check the ownership of the IPv6 address and the FQDN, sent by the DNS client. In addition, this paper describes how this method has been implemented.

Original languageEnglish
Title of host publicationProceedings - 2012 7th International Conference on Availability, Reliability and Security, ARES 2012
PublisherIEEE Computer Society
Pages206-211
Number of pages6
ISBN (Print)9780769547756
DOIs
Publication statusPublished - 1 Jan 2012
Externally publishedYes
Event2012 7th International Conference on Availability, Reliability and Security, ARES 2012 - Prague, Czech Republic
Duration: 20 Aug 201224 Aug 2012

Publication series

NameProceedings - 2012 7th International Conference on Availability, Reliability and Security, ARES 2012

Conference

Conference2012 7th International Conference on Availability, Reliability and Security, ARES 2012
Country/TerritoryCzech Republic
CityPrague
Period20/08/1224/08/12

Keywords

  • Cryptographically Generated Addresses
  • DNS update
  • ID-Based Cryptography
  • IPv6
  • Security

Fingerprint

Dive into the research topics of 'Dynamic DNS update security, based on cryptographically generated addresses and ID-based cryptography, in an IPv6 autoconfiguration context'. Together they form a unique fingerprint.

Cite this