skip to main content
10.1145/3630202.3630228acmconferencesArticle/Chapter ViewAbstractPublication PagesconextConference Proceedingsconference-collections
abstract

Authoritative DNS Server Discovery Method to Enhance DNS Privacy Preservation

Published:05 December 2023Publication History

ABSTRACT

Plaintext-based DNS domain name resolution poses significant privacy risks. Therefore, encrypting DNS communication across all pathways is essential for privacy preservation. The IETF has standardized DoT, DoH, and DoQ to achieve encryption between end terminals and DNS full-service resolvers. Currently, an Internet-Draft has been published for encrypted communication between DNS full-service resolvers and authoritative DNS servers. However, the probing policy on the Internet-Draft prioritizes compatibility and conducts plaintext communication until it discovers authoritative DNS servers that support encrypted communication. Therefore, the Internet-Draft's probing policy does not provide complete privacy preservation. In this paper, we propose a novel authoritative DNS server discovery approach that achieves privacy preservation while ensuring compatibility.

References

  1. Stéphane Bortzmeyer, Ralph Dolmans, and Paul E. Hoffman. 2021. DNS query name minimisation to Improve Privacy. IETF RFC9156. https://doi.org/10.17487/RFC9156Google ScholarGoogle ScholarDigital LibraryDigital Library
  2. Daniel Kahn Gillmor, Joey Salazar, and Paul E. Hoffman. 2023. Unilateral Opportunistic Deployment of Encrypted Recursive-to-Authoritative DNS. https://datatracker.ietf.org/doc/draft-ietf-dprive-unilateral-probing/ (Accessed on 20 Sep. 2023).Google ScholarGoogle Scholar
  3. Basileal Imana, Aleksandra Korolova, and John Heidemann. 2021. Institutional Privacy Risks in Sharing DNS Data. In Proceedings of the Applied Networking Research Workshop (Virtual Event, USA) (ANRW '21). Association for Computing Machinery, New York, NY, USA, 69--75. https://doi.org/10.1145/3472305.3472324Google ScholarGoogle ScholarDigital LibraryDigital Library

Index Terms

  1. Authoritative DNS Server Discovery Method to Enhance DNS Privacy Preservation

    Recommendations

    Comments

    Login options

    Check if you have access through your login credentials or your institution to get full access on this article.

    Sign in
    • Published in

      cover image ACM Conferences
      CoNEXT-SW '23: Proceedings of the on CoNEXT Student Workshop 2023
      December 2023
      41 pages
      ISBN:9798400704529
      DOI:10.1145/3630202

      Copyright © 2023 Owner/Author

      Permission to make digital or hard copies of part or all of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for third-party components of this work must be honored. For all other uses, contact the Owner/Author.

      Publisher

      Association for Computing Machinery

      New York, NY, United States

      Publication History

      • Published: 5 December 2023

      Check for updates

      Qualifiers

      • abstract
    • Article Metrics

      • Downloads (Last 12 months)42
      • Downloads (Last 6 weeks)1

      Other Metrics

    PDF Format

    View or Download as a PDF file.

    PDF

    eReader

    View online with eReader.

    eReader