DNS attack mitigation Using OpenStack Isolation

06/08/2021
by   Hassnain ul hassan, et al.
0

The Domain Name System (DNS) is essential for the Internet, giving a mechanism to resolve hostnames into Internet Protocol (IP) addresses. DNS is known as the world's largest distributed database that manages hostnames and Internet Protocol. By having the DNS, only simple names that can be easily memorized will be used and then the domain name system will map it into the numeric Internet Protocol addresses that are used by computers to communicate. This research aims to propose a model for the development of a private cloud infrastructure to host DNS. The cloud infrastructure will be created using the OpenStack software platform where each server will be hosted separately in a different virtual machine. Virtual network architecture will be created using the Software Defined Networking (SDN) approach and it will be secured using Firewall as a Service (FWaaS). By hosting DNS in private cloud infrastructure, the DNS servers will be out of reach by attackers which will prevent DNS attacks. Besides, available research had proven that the cloud is the best choice for DNS. A prototype had been implemented and evaluated for its efficiencies. The findings from the evaluation carried out shown a positive result.

READ FULL TEXT
research
07/18/2018

FRVM: Flexible Random Virtual IP Multiplexing in Software-Defined Networks

Network address shuffling is one of moving target defense (MTD) techniqu...
research
06/26/2019

A wrinkle in time: A case study in DNS poisoning

The Domain Name System (DNS) provides a translation between readable dom...
research
06/01/2023

How We Ruined The Internet

At the end of the 19th century the logician C.S. Peirce coined the term ...
research
01/10/2022

The SEED Internet Emulator and Its Applications in Cybersecurity Education

In cybersecurity courses, it is quite challenging to do hands-on activit...
research
10/04/2001

ENUM: The Collision of Telephony and DNS Policy

ENUM marks either the convergence or collision of the public telephone n...
research
05/18/2020

NXNSAttack: Recursive DNS Inefficiencies and Vulnerabilities

The Domain Name System (DNS) infrastructure, a most critical system the ...
research
02/28/2019

Monitoring as a Service of the cloud data centre: can SDNs help?

The recent rise of cloud applications, representinglarge complex modern ...

Please sign up or login with your details

Forgot password? Click here to reset