Poster: Observable KINDNS: Validating DNS Hygiene

Research output: Chapter in Book/Report/Conference proceedingConference contributionAcademicpeer-review

1 Citation (Scopus)
56 Downloads (Pure)

Abstract

The Internet's naming system (DNS) is a hierarchically structured database, with hundreds of millions of domains in a radically distributed management architecture. The distributed nature of the DNS is the primary factor that allowed it to scale to its current size, but it also brings security and stability risks. The Internet standards community (IETF) has published several operational best practices to improve DNS resilience, but operators must make their own decisions that tradeoff security, cost, and complexity. Since these decisions can impact the security of billions of Internet users, recently ICANN has proposed an initiative to codify best practices into a set of global norms to improve security: the Knowledge-Sharing and Instantiating Norms for DNS and Naming Security (KINDNS) [4]. A similar effort for routing security - Mutually Agreed Norms for Routing Security - provided inspiration for this effort. The MANRS program encourages operators to voluntarily commit to a set of practices that will improve collective routing security - a challenge when incentives to conform with these practices does not generate a clear return on investment for operators. One challenge for both initiatives is independent verification of conformance with the practices. The KINDNS conversation has just started, and stakeholders are still debating what should be in the set of practices. At this early stage, we analyze possible best practices in terms of their measurability by third parties, including a review of DNS measurement studies and available data sets (Table 1).
Original languageEnglish
Title of host publicationIMC '22
Subtitle of host publicationProceedings of the 2022 ACM Internet Measurement Conference, Nice, France, October 25-27, 2022
EditorsChadi Barakat
Place of PublicationNew York, NY
PublisherAssociation for Computing Machinery
Pages740-741
Number of pages2
ISBN (Electronic)978-1-4503-9259-4
DOIs
Publication statusPublished - 25 Oct 2022
Event22nd ACM Internet Measurement Conference, IMC 2022 - Nice, France
Duration: 25 Oct 202227 Oct 2022
Conference number: 22
https://conferences.sigcomm.org/imc/2022/

Publication series

NameProceedings of the ACM SIGCOMM Internet Measurement Conference, IMC

Conference

Conference22nd ACM Internet Measurement Conference, IMC 2022
Abbreviated titleIMC 2022
Country/TerritoryFrance
CityNice
Period25/10/2227/10/22
Internet address

Keywords

  • 2024 OA procedure

Fingerprint

Dive into the research topics of 'Poster: Observable KINDNS: Validating DNS Hygiene'. Together they form a unique fingerprint.

Cite this