Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure
The major problem in DNS as originally specified in RFC 1035 is that it does not offer any form of security and it is vulnerable to spoofing, man-in-the-middle and cache poisoning attacks. This kind of attacks can compromise all communications to the host that initiate any connection that require...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Article |
Published: |
World Academic Publishing
2012
|
Subjects: | |
Online Access: | http://eprints.utm.my/id/eprint/30482/ http://www.academicpub.org/cisme/paperInfo.aspx?PaperID=13545 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
id |
my.utm.30482 |
---|---|
record_format |
eprints |
spelling |
my.utm.304822019-09-22T07:25:06Z http://eprints.utm.my/id/eprint/30482/ Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure Mantoro, Teddy A. Ayu, Media Bidin, Ahmad Fakhrurrazi Norhanipah, Saiful Azhar QA75 Electronic computers. Computer science The major problem in DNS as originally specified in RFC 1035 is that it does not offer any form of security and it is vulnerable to spoofing, man-in-the-middle and cache poisoning attacks. This kind of attacks can compromise all communications to the host that initiate any connection that requires address translation. The threats from a certain attack on DNS are common and although several tools or devices have been introduced, it still needs to have a better solution in overcoming the issues. At the same time, there are several factors that preventing a widespread implementation of the DNSSEC, such as security testing, performance evaluation and used functionality testing. This paper proposed a framework and an implementation of DNSSEC on IPv6 environment based on the specifications for iDNSSEC on RFC 4033, 4044 and 4055. This implementation of the DNSSEC framework on IPv6 environment provides origin authentication of DNS data, data integrity, and authenticated denial of existence to protect the internet infrastructure further from malicious attacks. The prototype functionality and security testing and the performance evaluation are also presented in this paper. World Academic Publishing 2012-12 Article PeerReviewed Mantoro, Teddy and A. Ayu, Media and Bidin, Ahmad Fakhrurrazi and Norhanipah, Saiful Azhar (2012) Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure. International Journal Communications Information Science and Management Engineering (CISME), 2 (12). pp. 64-70. ISSN 2222-1859 http://www.academicpub.org/cisme/paperInfo.aspx?PaperID=13545 |
institution |
Universiti Teknologi Malaysia |
building |
UTM Library |
collection |
Institutional Repository |
continent |
Asia |
country |
Malaysia |
content_provider |
Universiti Teknologi Malaysia |
content_source |
UTM Institutional Repository |
url_provider |
http://eprints.utm.my/ |
topic |
QA75 Electronic computers. Computer science |
spellingShingle |
QA75 Electronic computers. Computer science Mantoro, Teddy A. Ayu, Media Bidin, Ahmad Fakhrurrazi Norhanipah, Saiful Azhar Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure |
description |
The major problem in DNS as originally specified in RFC 1035 is that it does not offer any form of security and it is vulnerable to spoofing, man-in-the-middle and cache poisoning attacks. This kind of attacks can compromise all communications to the host that initiate any connection that requires address translation. The threats from a certain attack on DNS are common and although several tools or devices have been introduced, it still needs to have a better solution in overcoming the issues. At the same time, there are several factors that preventing a widespread implementation of the DNSSEC, such as security testing, performance evaluation and used functionality testing. This paper proposed a framework and an implementation of DNSSEC on IPv6 environment based on the specifications for iDNSSEC on RFC 4033, 4044 and 4055. This implementation of the DNSSEC framework on IPv6 environment provides origin authentication of DNS data, data integrity, and authenticated denial of existence to protect the internet infrastructure further from malicious attacks. The prototype functionality and security testing and the performance evaluation are also presented in this paper. |
format |
Article |
author |
Mantoro, Teddy A. Ayu, Media Bidin, Ahmad Fakhrurrazi Norhanipah, Saiful Azhar |
author_facet |
Mantoro, Teddy A. Ayu, Media Bidin, Ahmad Fakhrurrazi Norhanipah, Saiful Azhar |
author_sort |
Mantoro, Teddy |
title |
Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure |
title_short |
Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure |
title_full |
Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure |
title_fullStr |
Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure |
title_full_unstemmed |
Framework for Domain Name System Security Extensions (DNSSEC) to support the IPv6 infrastructure |
title_sort |
framework for domain name system security extensions (dnssec) to support the ipv6 infrastructure |
publisher |
World Academic Publishing |
publishDate |
2012 |
url |
http://eprints.utm.my/id/eprint/30482/ http://www.academicpub.org/cisme/paperInfo.aspx?PaperID=13545 |
_version_ |
1646010275353067520 |
score |
13.251813 |