The State of the Art in DNS Spoo

The State of the Art in DNS Spoo
复制标题

DNS Spoo 的最新技术

DOI:
--
复制
发表时间:
2006
期刊:
影响因子:
--
通讯作者:
R. Araújo
R. Araújo
中科院分区:
--
文献类型:
--
作者:
U. Steinho;A. Wiesmaier;R. Araújo

文献摘要

被引文献

相似文献

DNS负责将人类可读的域名解析为数字IP地址。它是在互联网早期设计的协议,其特点是安全机制很弱。本文的目的是概述当前域名解析系统所面临的威胁。我们描述了DNS系统和攻击者可能的动机。下面我们将描述不同的攻击,并讨论它们成功的机会和可能的对策。我们概述了不同DNS服务器的选定版本,并讨论了它们在互联网上的分布。最后总结了DNS欺骗的风险。
The DNS is responsible for resolving human-readable domain names to numeric IP addresses. It is a protocol designed in the early days of the internet, and features only weak security mechanisms. The purpose of this paper is to give an overview of the threats on the current system for domain name resolution. We describe the DNS system and possible motivations for attackers. In the following we describe the di erent attacks, and discuss their success chances and possible countermeasures. We include an overview of a ected versions of di erent DNS servers, and discuss their distribution in the internet. Lastly we give a summary on the risk of DNS spoo ng.