Loading [a11y]/accessibility-menu.js
ASDWL: Mitigating DNS Random Subdomain Attacks for Second Level Domain | IEEE Conference Publication | IEEE Xplore

ASDWL: Mitigating DNS Random Subdomain Attacks for Second Level Domain


Abstract:

DNS is a critical infrastructure of internet, allowing clients to get the associated IP addresses of domain names efficiently. Attacker may send a large number of random ...Show More

Abstract:

DNS is a critical infrastructure of internet, allowing clients to get the associated IP addresses of domain names efficiently. Attacker may send a large number of random sub-domain queries for specific victim domains from bots, leading the recursive resolvers to reach out to the authoritative servers, called as random subdomain attacks. Thus, random subdomain attacks on DNS can cause a DDoS on DNS servers. In this paper, we propose an ASDWL scheme to mitigate DNS random subdomain attack for second level domains. The authentication of the subdomain whitelist is based on the cooperation of DANE and JWS, compatible with DNSSEC. By implementing the subdomain whitelist, our scheme can reduce the number of queries between recursive resolvers and authoritative servers, and decrease the cache size of random subdomains on DNS servers, particularly during random subdomain attacks targeting critical SLD.
Date of Conference: 28-30 May 2024
Date Added to IEEE Xplore: 05 July 2024
ISBN Information:

ISSN Information:

Conference Location: Harrisonburg, VA, USA

Contact IEEE to Subscribe

References

References is not available for this document.