Sciweavers

IEEEARES
2007
IEEE

Security vulnerabilities in DNS and DNSSEC

13 years 10 months ago
Security vulnerabilities in DNS and DNSSEC
We present an analysis of security vulnerabilities in the Domain Name System (DNS) and the DNS Security Extensions (DNSSEC). DNS data that is provided by name servers lacks support for data origin authentication and data integrity. This makes DNS vulnerable to man in the middle (MITM) attacks, as well as a range of other attacks. To make DNS more robust, DNSSEC was proposed by the Internet Engineering Task Force (IETF). DNSSEC provides data origin authentication and integrity by using digital signatures. Although DNSSEC provides security for DNS data, it suffers from serious security and operational flaws. We discuss the DNS and DNSSEC architectures, and consider the associated security vulnerabilities.
Suranjith Ariyapperuma, Chris J. Mitchell
Added 03 Jun 2010
Updated 03 Jun 2010
Type Conference
Year 2007
Where IEEEARES
Authors Suranjith Ariyapperuma, Chris J. Mitchell
Comments (0)