Securing domain name system combined with MIPv6 for mobile hosts

DNS is the standard mechanism for name to IP address resolution. The DNS has been extended to DNSSEC to add security by providing origin authentication and data integrity by the process of creating signatures periodically, which results in intensive computations. Adding digital signatures to a domai...

Full description

Saved in:
Bibliographic Details
Main Authors: Jung, Younchan, Peradilla, Marnel, Atwood, William
Format: text
Published: Animo Repository 2013
Subjects:
Online Access:https://animorepository.dlsu.edu.ph/faculty_research/13549
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: De La Salle University
id oai:animorepository.dlsu.edu.ph:faculty_research-13613
record_format eprints
spelling oai:animorepository.dlsu.edu.ph:faculty_research-136132024-12-02T07:05:12Z Securing domain name system combined with MIPv6 for mobile hosts Jung, Younchan Peradilla, Marnel Atwood, William DNS is the standard mechanism for name to IP address resolution. The DNS has been extended to DNSSEC to add security by providing origin authentication and data integrity by the process of creating signatures periodically, which results in intensive computations. Adding digital signatures to a domain increases each record size by 5-7 times, which puts a burden of DNS reply messages on the authoritative name servers. The goal of this paper is to find secure DNS mechanism, which cause relatively low computation loads and reply burden especially for infrastructure mode MANET gateways that are responsible for name resolution services as well as local mobility management for mobile hosts. This paper proposes SECDNS (Secure DNS) mechanism that handles secure query/reply transactions using the one-time session key generated per a query basis. In the proposed SECDNS, burden for securing DNS is distributed for every DNS queries. We analyze how many SECDNS transactions can the session key with a given length handle and suggest the solution of the anti-MITM attack scheme, which protects the name resolution services against the possible MITM attacks and make it useless for the enemy to decrypt the SECDNS reply messages in time. 2013-01-01T08:00:00Z text https://animorepository.dlsu.edu.ph/faculty_research/13549 Faculty Research Work Animo Repository Internet domain names Wireless communication systems Computer Engineering Digital Communications and Networking
institution De La Salle University
building De La Salle University Library
continent Asia
country Philippines
Philippines
content_provider De La Salle University Library
collection DLSU Institutional Repository
topic Internet domain names
Wireless communication systems
Computer Engineering
Digital Communications and Networking
spellingShingle Internet domain names
Wireless communication systems
Computer Engineering
Digital Communications and Networking
Jung, Younchan
Peradilla, Marnel
Atwood, William
Securing domain name system combined with MIPv6 for mobile hosts
description DNS is the standard mechanism for name to IP address resolution. The DNS has been extended to DNSSEC to add security by providing origin authentication and data integrity by the process of creating signatures periodically, which results in intensive computations. Adding digital signatures to a domain increases each record size by 5-7 times, which puts a burden of DNS reply messages on the authoritative name servers. The goal of this paper is to find secure DNS mechanism, which cause relatively low computation loads and reply burden especially for infrastructure mode MANET gateways that are responsible for name resolution services as well as local mobility management for mobile hosts. This paper proposes SECDNS (Secure DNS) mechanism that handles secure query/reply transactions using the one-time session key generated per a query basis. In the proposed SECDNS, burden for securing DNS is distributed for every DNS queries. We analyze how many SECDNS transactions can the session key with a given length handle and suggest the solution of the anti-MITM attack scheme, which protects the name resolution services against the possible MITM attacks and make it useless for the enemy to decrypt the SECDNS reply messages in time.
format text
author Jung, Younchan
Peradilla, Marnel
Atwood, William
author_facet Jung, Younchan
Peradilla, Marnel
Atwood, William
author_sort Jung, Younchan
title Securing domain name system combined with MIPv6 for mobile hosts
title_short Securing domain name system combined with MIPv6 for mobile hosts
title_full Securing domain name system combined with MIPv6 for mobile hosts
title_fullStr Securing domain name system combined with MIPv6 for mobile hosts
title_full_unstemmed Securing domain name system combined with MIPv6 for mobile hosts
title_sort securing domain name system combined with mipv6 for mobile hosts
publisher Animo Repository
publishDate 2013
url https://animorepository.dlsu.edu.ph/faculty_research/13549
_version_ 1818101966259093504