Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure

The major problem in DNS as originally specified in RFC 1035 is that it does not offer any form of security and it is vulnerable to spoofing, man-in-the-middle and cache poisoning attacks. This kind of attacks can compromise all communications to the host that initiate any connection that require...

Full description

Saved in:
Bibliographic Details
Main Authors: Mantoro, Teddy, A. Ayu, Media, Bidin, Ahmad Fakhrurrazi, Norhanipah, Saiful Azhar
Format: Article
Published: World Academic Publishing 2012
Subjects:
Online Access:http://eprints.utm.my/id/eprint/30482/
http://www.academicpub.org/cisme/paperInfo.aspx?PaperID=13545
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.utm.30482
record_format eprints
spelling my.utm.304822019-09-22T07:25:06Z http://eprints.utm.my/id/eprint/30482/ Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure Mantoro, Teddy A. Ayu, Media Bidin, Ahmad Fakhrurrazi Norhanipah, Saiful Azhar QA75 Electronic computers. Computer science The major problem in DNS as originally specified in RFC 1035 is that it does not offer any form of security and it is vulnerable to spoofing, man-in-the-middle and cache poisoning attacks. This kind of attacks can compromise all communications to the host that initiate any connection that requires address translation. The threats from a certain attack on DNS are common and although several tools or devices have been introduced, it still needs to have a better solution in overcoming the issues. At the same time, there are several factors that preventing a widespread implementation of the DNSSEC, such as security testing, performance evaluation and used functionality testing. This paper proposed a framework and an implementation of DNSSEC on IPv6 environment based on the specifications for iDNSSEC on RFC 4033, 4044 and 4055. This implementation of the DNSSEC framework on IPv6 environment provides origin authentication of DNS data, data integrity, and authenticated denial of existence to protect the internet infrastructure further from malicious attacks. The prototype functionality and security testing and the performance evaluation are also presented in this paper. World Academic Publishing 2012-12 Article PeerReviewed Mantoro, Teddy and A. Ayu, Media and Bidin, Ahmad Fakhrurrazi and Norhanipah, Saiful Azhar (2012) Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure. International Journal Communications Information Science and Management Engineering (CISME), 2 (12). pp. 64-70. ISSN 2222-1859 http://www.academicpub.org/cisme/paperInfo.aspx?PaperID=13545
institution Universiti Teknologi Malaysia
building UTM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
url_provider http://eprints.utm.my/
topic QA75 Electronic computers. Computer science
spellingShingle QA75 Electronic computers. Computer science
Mantoro, Teddy
A. Ayu, Media
Bidin, Ahmad Fakhrurrazi
Norhanipah, Saiful Azhar
Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
description The major problem in DNS as originally specified in RFC 1035 is that it does not offer any form of security and it is vulnerable to spoofing, man-in-the-middle and cache poisoning attacks. This kind of attacks can compromise all communications to the host that initiate any connection that requires address translation. The threats from a certain attack on DNS are common and although several tools or devices have been introduced, it still needs to have a better solution in overcoming the issues. At the same time, there are several factors that preventing a widespread implementation of the DNSSEC, such as security testing, performance evaluation and used functionality testing. This paper proposed a framework and an implementation of DNSSEC on IPv6 environment based on the specifications for iDNSSEC on RFC 4033, 4044 and 4055. This implementation of the DNSSEC framework on IPv6 environment provides origin authentication of DNS data, data integrity, and authenticated denial of existence to protect the internet infrastructure further from malicious attacks. The prototype functionality and security testing and the performance evaluation are also presented in this paper.
format Article
author Mantoro, Teddy
A. Ayu, Media
Bidin, Ahmad Fakhrurrazi
Norhanipah, Saiful Azhar
author_facet Mantoro, Teddy
A. Ayu, Media
Bidin, Ahmad Fakhrurrazi
Norhanipah, Saiful Azhar
author_sort Mantoro, Teddy
title Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
title_short Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
title_full Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
title_fullStr Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
title_full_unstemmed Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
title_sort framework for domain name system security extensions (dnssec) to support the ipv6 infrastructure
publisher World Academic Publishing
publishDate 2012
url http://eprints.utm.my/id/eprint/30482/
http://www.academicpub.org/cisme/paperInfo.aspx?PaperID=13545
_version_ 1646010275353067520
score 13.160551