DNS Security Challenges and Best Practices to Deploy Secure DNS with Digital Signatures

被引:0
|
作者
Jalalzai, M. H. [1 ]
Shahid, W. B. [1 ]
Iqbal, M. M. W. [1 ]
机构
[1] Natl Univ Sci & Technol, Islamabad, Pakistan
关键词
DNS Vulnerabilities; DNS Security; PKI; Digital Signatures; DNSSEC; Network and Computer Security;
D O I
暂无
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
This paper is meant to discuss the DNS security vulnerabilities and best practices to address DNS security challenges. The Domain Name System (DNS) is the foundation of internet which translates user friendly domains, named based Resource Records (RR) into corresponding IP addresses and vice-versa. Nowadays usage of DNS services are not merely for translating domain names, but it is also used to block spam, email authentication like DKIM and the latest DMARC, the TXT records found in DNS are mainly about improving the security of services. So, virtually almost every internet application is using DNS. If not works properly then whole internet communication will collapse. Therefore security of DNS infrastructures is one of the core requirements for any organization in current cyber security arena. DNS are favorite place for attackers due to huge loss of its outcome. So breach in DNS security will in resultant affects the trust worthiness of whole internet. Therefore security of DNS is paramount, in case DNS infrastructure is vulnerable and compromised, organizations lose their revenue, they face downtime, customer dissatisfaction, privacy loss, confront legal challenges and many more. As we know that DNS is now become the largest distributed database, but initially at the time of DNS design the only goal was to provide scalable and available name resolution service but its security perspectives were not focused and overlooked at that time. So there are number of security flaws exist and there is an urgent requirement to provide some additional mechanism for addressing known vulnerabilities. From these security challenges, most important one is DNS data integrity and availability. For this purpose we introduced cryptographic framework that is configured on open source platform by incorporating DNSSEC with Bind DNS software which addresses integrity and availability issues of DNS by establishing DNS chain of trust using digitally signed DNS data.
引用
收藏
页码:280 / 285
页数:6
相关论文
共 17 条
  • [1] A study on establishment of secure RFID network using DNS security extension
    Ham, Y
    Kim, N
    Pyo, C
    Chung, J
    2005 Asia-Pacific Conference on Communications (APCC), Vols 1& 2, 2005, : 525 - 529
  • [2] The Impact of Domain Name Server (DNS) over Hypertext Transfer Protocol Secure (HTTPS) on Cyber Security: Limitations, Challenges, and Detection Techniques
    Dawood, Muhammad
    Tu, Shanshan
    Xiao, Chuangbai
    Haris, Muhammad
    Alasmary, Hisham
    Waqas, Muhammad
    Rehman, Sadaqat Ur
    Computers, Materials and Continua, 2024, 80 (03): : 4513 - 4542
  • [3] Challenges and Best Practices in Information Security Management
    McLaughlin, Mark-David
    Gogan, Janis
    MIS QUARTERLY EXECUTIVE, 2018, 17 (03) : 237 - 262
  • [4] Digital Threads – benefits, challenges, and best practices
    Gery, Eran
    INCOSE International Symposium, 2023, 33 : 103 - 119
  • [5] Adoption Ethics in a Digital World: Challenges and Best Practices
    Reamer, Frederic G.
    Siegel, Deborah H.
    ADOPTION QUARTERLY, 2021, 24 (01) : 69 - 88
  • [6] Disaster Recovery on Cloud - Security Compliance Challenges and Best Practices
    Rajendran, Sreenivasan
    Sundar, Karthik
    Maini, Rajat
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON CLOUD SECURITY MANAGEMENT (ICCSM-2013), 2013, : 149 - 158
  • [7] Digital Twin Stakeholder Communication: Characteristics, Challenges, and Best Practices
    Kober, Christian
    Medina, Francisco Gomez
    Benfer, Martin
    Wulfsberg, Jens Peter
    Martinez, Veronica
    Lanza, Gisela
    COMPUTERS IN INDUSTRY, 2024, 161
  • [8] SoK: Security of Microservice Applications: A Practitioners' Perspective on Challenges and Best Practices
    Billawa, Priyanka
    Tukaram, Anusha Bambhore
    Ferreyra, Nicolas E. Diaz
    Steghofer, Jan Philipp
    Scandariato, Riccardo
    Simhandl, Georg
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [9] Software-as-a-Service Security Challenges and Best Practices: A Multivocal Literature Review
    Humayun, Mamoona
    Niazi, Mahmood
    Almufareh, Maram Fahhad
    Jhanjhi, N. Z.
    Mahmood, Sajjad
    Alshayeb, Mohammad
    APPLIED SCIENCES-BASEL, 2022, 12 (08):
  • [10] Digital Ageism: Emerging Challenges and Best Practices of Age-Friendly Digital Urban Governance
    Kolotouchkina, Olga
    Manas-Viniegra, Luis
    Vinaras-Abad, Monica
    MEDIA AND COMMUNICATION, 2023, 11 (03): : 6 - 17