Detecting and Refactoring Operational Smells within the Domain Name System

被引:1
|
作者
Radwan, Marwan [1 ]
Heckel, Reiko [1 ]
机构
[1] Univ Leicester, Dept Comp Sci, Leicester, Leics, England
关键词
D O I
10.4204/EPTCS.181.8
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The Domain Name System (DNS) is one of the most important components of the Internet infrastructure. DNS relies on a delegation-based architecture, where resolution of names to their IP addresses requires resolving the names of the servers responsible for those names. The recursive structures of the inter-dependencies that exist between name servers associated with each zone are called dependency graphs. System administrators' operational decisions have far reaching effects on the DNSs qualities. They need to be soundly made to create a balance between the availability, security and resilience of the system. We utilize dependency graphs to identify, detect and catalogue operational bad smells. Our method deals with smells on a high-level of abstraction using a consistent taxonomy and reusable vocabulary, defined by a DNS Operational Model. The method will be used to build a diagnostic advisory tool that will detect configuration changes that might decrease the robustness or security posture of domain names before they become into production.
引用
收藏
页码:113 / 128
页数:16
相关论文
共 50 条
  • [41] Mobile domain name system: An alternative for mobile IP
    Liu, HI
    ICCS 2002: 8TH INTERNATIONAL CONFERENCE ON COMMUNICATIONS SYSTEMS, VOLS 1 AND 2, PROCEEDINGS, 2002, : 834 - 838
  • [42] A distributed intrusion detection model for the domain name system
    Chen, Chang-Sheng
    Tseng, Shian-Shyong
    Liu, Chien-Liang
    2002, Institute of Information Science (18)
  • [43] Principle and design of computer network domain name system
    Yin, Changming
    Li, Feng
    Changsha Dianli Xueyuan Xuebao/Journal of Changsha University of Electric Power, 1998, 13 (01): : 25 - 29
  • [44] A First Look at QNAME Minimization in the Domain Name System
    de Vries, Wouter B.
    Scheitle, Quirin
    Muller, Moritz
    Toorop, Willem
    Dolmans, Ralph
    Van Rijswijk-Deij, Roland
    PASSIVE AND ACTIVE MEASUREMENT, PAM 2019, 2019, 11419 : 147 - 160
  • [45] A Generic Architecture for Building a Domain Name Reputation System
    Rotuna, Carmen Ionela
    Gheorghita, Alexandru
    Sandu, Ionut
    Dumitrache, Mihail
    Udroiu, Meda
    Smada, Dragos
    STUDIES IN INFORMATICS AND CONTROL, 2023, 32 (02): : 39 - 49
  • [46] Privacy by Infrastructure: The Unresolved Case of the Domain Name System
    Bradshaw, Samantha
    DeNardis, Laura
    POLICY AND INTERNET, 2019, 11 (01): : 16 - 36
  • [47] A distributed intrusion detection model for the domain name system
    Chen, CS
    Tseng, SS
    Liu, CL
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2002, 18 (06) : 999 - 1009
  • [48] Domain name system security and privacy: A contemporary survey
    Khormali, Aminollah
    Park, Jeman
    Alasmary, Hisham
    Anwar, Afsah
    Saad, Muhammad
    Mohaisen, David
    COMPUTER NETWORKS, 2021, 185 (185)
  • [49] Maintaining strong cache consistency for the domain name system
    Chen, Xin
    Wang, Haining
    Ren, Shansi
    Zhang, Xiaodong
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2007, 19 (08) : 1057 - 1071
  • [50] A secure domain name system based on intrusion tolerance
    Zhou, Wei
    Chen, Liu
    PROCEEDINGS OF 2008 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2008, : 3535 - +