中文

DNS 协议的安全性:DNSSEC 的实现与弱点分析

密码学与安全 2012-08-01 v1

摘要

如今,互联网提供了许多关键应用。因此,对于互联网服务提供商而言,确保操作的可追溯性和数据交换的安全性变得至关重要。由于所有这些通信都基于域名系统(DNS)协议的使用,因此有必要考虑通过提出该协议的安全版本来增强和保护它,该版本可以纠正 DNS 协议的全部或部分弱点和漏洞。在此背景下,IETF 创建了 DNSSEC 以确保 DNS 数据的完整性和此类数据源的认证。DNSSEC 基于公钥密码学提供不同的安全服务。在本文中,我们将首先介绍 DNS 协议及其弱点。随后,我们将着重研究 DNSSEC 的实现和数据交换,并深入分析其弱点。

关键词

引用

@article{arxiv.1207.7109,
  title  = {Security of the DNS Protocol - Implementation and Weaknesses Analyses of DNSSEC},
  author = {Kaouthar Chetioui and Ghizlane Orhanou and Said El Hajji and Abdelmajid Lakbabi},
  journal= {arXiv preprint arXiv:1207.7109},
  year   = {2012}
}

备注

6 pages, 13 figures; IJCSI International Journal of Computer Science Issues, Vol. 9, Issue 2, No 3, March 2012; http://www.ijcsi.org/articles/Security-of-the-dns-protocol--implementation-and-weaknesses-analyses-of-dnssec.php