An approach to evaluation of common DNS misconfigurations

11/15/2017
by   Petar D. Bojovic, et al.
0

DNS is a basic Internet service which almost all other user services depend on. However, what has been perceived in practice are a lot of inconsistencies and errors in the configuration of servers that cause different problems. The majority of such cases are included in this research with the aim of identifying and classifying the major problems of DNS availability, performance and security. In order to analyze these problems in correlation with DNS administrators working practice, we have developed a methodology and tool for testing, quantifying and analysis of DNS misconfigurations. The methodology and tool were applied on three heterogeneous domain categories - the most popular Internet domains, academic domains and one national top level domain. Our results confirm relatively high percentage of misconfigured domains, especially in the academic and national categories. However, we have shown that fixing the configuration on relatively small number of name servers can have significant impact to great number of domains. Proper domain management, permanent testing and collaboration with other administrators are identified as measures to improve domains operation, stability and security.

READ FULL TEXT

page 5

page 6

research
01/08/2020

Watching the Weak Link into Your Home: An Inspection and Monitoring Toolkit for TR-069

TR-069 is a standard for the remote management of end-user devices by se...
research
05/25/2022

No Time for Downtime: Understanding Post-Attack Behaviors by Customers of Managed DNS Providers

We leverage large-scale DNS measurement data on authoritative name serve...
research
02/10/2021

Dot-Science Top Level Domain: academic websites or dumpsites?

Dot-science was launched in 2015 as a new academic top-level domain (TLD...
research
04/22/2020

A NIS Directive compliant Cybersecurity Maturity Assessment Framework

The NIS Directive introduces obligations for the security of the network...
research
03/30/2020

Analysis of an Extension Dynamic Name Service – A discussion on DNS compliance with RFC 6891

Domain Name Service (DNS) resolution is a mechanism that resolves the sy...
research
05/30/2019

XDoser, A Benchmarking Tool for System Load Measurement Using Denial of Service Features

Technology has developed so fast that we feel both safe as well as unsaf...
research
10/04/2001

ENUM: The Collision of Telephony and DNS Policy

ENUM marks either the convergence or collision of the public telephone n...

Please sign up or login with your details

Forgot password? Click here to reset