Paper Abstract and Keywords |
Presentation |
2020-04-16 13:50
A Proposal of FQDN-based Whitelist Filter on DNS Cache Server against DNS Water Torture Attack Keita Hasegawa, Daishi Kondo, Hideki Tode (OPU) NS2020-2 |
Abstract |
(in Japanese) |
(See Japanese page) |
(in English) |
A Distributed Denial of Service (DDoS) attack is a major social issue, and as one of the DDoS incidents, a Domain Name Service (DNS) DDoS attack against Dyn DNS, which is a DNS provider, caused the outage of several web services in 2016. This paper tackles a DNS water torture attack that was observed in the Dyn cyberattack. In the DNS water torture attack, attackers create a large number of unique Fully Qualified Domain Names (FQDNs) with random labels, send them to DNS cache servers and authoritative DNS servers, and collapse these servers. In order to reduce an impact of this attack, serverd on a countermeasures on DNS cache servers have been presented. However, one serious drawback of conventional countermeasures is that they cannot detect malicious DNS queries generated by an advanced DNS water torture attack, and therefore, the threat of this attack still remains. Against this disadvantage, we propose an FQDN-based whitelist filter that registers actually existed FQDNs and drops non-existed FQDNs that are created by the attackers. This whitelist can reduce a negative impact by falsely dropping legitimate DNS queries while eliminating malicious ones. |
Keyword |
(in Japanese) |
(See Japanese page) |
(in English) |
DNS Water Torture Attack / DNS Cache Server / FQDN / Whitelist Filter / / / / |
Reference Info. |
IEICE Tech. Rep., vol. 120, no. 4, NS2020-2, pp. 7-12, April 2020. |
Paper # |
NS2020-2 |
Date of Issue |
2020-04-09 (NS) |
ISSN |
Online edition: ISSN 2432-6380 |
Copyright and reproduction |
All rights are reserved and no part of this publication may be reproduced or transmitted in any form or by any means, electronic or mechanical, including photocopy, recording, or any information storage and retrieval system, without permission in writing from the publisher. Notwithstanding, instructors are permitted to photocopy isolated articles for noncommercial classroom use without fee. (License No.: 10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
Download PDF |
NS2020-2 |
Conference Information |
Committee |
NS |
Conference Date |
2020-04-16 - 2020-04-17 |
Place (in Japanese) |
(See Japanese page) |
Place (in English) |
Online |
Topics (in Japanese) |
(See Japanese page) |
Topics (in English) |
Traffic, Network evaluation, Performance, Resource control and management, Traffic engineering, Network reliability and resilience, Network Intelligence and AI, etc. |
Paper Information |
Registration To |
NS |
Conference Code |
2020-04-NS |
Language |
Japanese |
Title (in Japanese) |
(See Japanese page) |
Sub Title (in Japanese) |
(See Japanese page) |
Title (in English) |
A Proposal of FQDN-based Whitelist Filter on DNS Cache Server against DNS Water Torture Attack |
Sub Title (in English) |
|
Keyword(1) |
DNS Water Torture Attack |
Keyword(2) |
DNS Cache Server |
Keyword(3) |
FQDN |
Keyword(4) |
Whitelist Filter |
Keyword(5) |
|
Keyword(6) |
|
Keyword(7) |
|
Keyword(8) |
|
1st Author's Name |
Keita Hasegawa |
1st Author's Affiliation |
Osaka Prefecture University (OPU) |
2nd Author's Name |
Daishi Kondo |
2nd Author's Affiliation |
Osaka Prefecture University (OPU) |
3rd Author's Name |
Hideki Tode |
3rd Author's Affiliation |
Osaka Prefecture University (OPU) |
4th Author's Name |
|
4th Author's Affiliation |
() |
5th Author's Name |
|
5th Author's Affiliation |
() |
6th Author's Name |
|
6th Author's Affiliation |
() |
7th Author's Name |
|
7th Author's Affiliation |
() |
8th Author's Name |
|
8th Author's Affiliation |
() |
9th Author's Name |
|
9th Author's Affiliation |
() |
10th Author's Name |
|
10th Author's Affiliation |
() |
11th Author's Name |
|
11th Author's Affiliation |
() |
12th Author's Name |
|
12th Author's Affiliation |
() |
13th Author's Name |
|
13th Author's Affiliation |
() |
14th Author's Name |
|
14th Author's Affiliation |
() |
15th Author's Name |
|
15th Author's Affiliation |
() |
16th Author's Name |
|
16th Author's Affiliation |
() |
17th Author's Name |
|
17th Author's Affiliation |
() |
18th Author's Name |
|
18th Author's Affiliation |
() |
19th Author's Name |
|
19th Author's Affiliation |
() |
20th Author's Name |
|
20th Author's Affiliation |
() |
Speaker |
Author-1 |
Date Time |
2020-04-16 13:50:00 |
Presentation Time |
25 minutes |
Registration for |
NS |
Paper # |
NS2020-2 |
Volume (vol) |
vol.120 |
Number (no) |
no.4 |
Page |
pp.7-12 |
#Pages |
6 |
Date of Issue |
2020-04-09 (NS) |
|