Reclaiming Privacy and Performance over Centralized DNS

02/26/2023
by   Rashna Kumar, et al.
0

The Domain Name System (DNS) is both a key determinant of users' quality of experience (QoE) and privy to their tastes, preferences, and even the devices they own. Growing concern about user privacy and QoE has brought a number of alternative DNS services, from public DNS to encrypted and Oblivious DNS. While offering valuable features, these DNS variants are operated by a handful of providers, reinforcing a trend towards centralization that has raised concerns about privacy, competition, resilience and Web QoE. The goal of this work is to let users take advantage of third-party DNS services, without sacrificing privacy or performance. We follow Wheeler's advice, adding another level of indirection with an end-system DNS resolver, Onoma, that improves privacy, avoiding DNS-based user-reidentification by inserting and sharding requests across resolvers, and improves performance by running resolution races among resolvers and reinstating the client-resolver proximity assumption content delivery networks rely on. As our evaluation shows, while there may not be an ideal service for all clients in all places, Onoma dynamically finds the best service for any given location.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/20/2020

D-DNS: Towards Re-Decentralizing the DNS

Nearly all Internet services rely on the Domain Name System (DNS) to res...
research
03/30/2017

Towards a Visual Privacy Advisor: Understanding and Predicting Privacy Risks in Images

With an increasing number of users sharing information online, privacy i...
research
07/08/2020

Privacy and Integrity Preserving Computations with CRISP

In the digital era, users share their personal data with service provide...
research
05/30/2021

SHELBRS: Location Based Recommendation Services using Switchable Homomorphic Encryption

Location-Based Recommendation Services (LBRS) has seen an unprecedented ...
research
01/21/2020

Resilient Collaborative Privacy for Location-Based Services

Location-based Services (LBSs) provide valuable services, with convenien...
research
01/24/2020

K-resolver: Towards Decentralizing Encrypted DNS Resolution

Centralized DNS over HTTP/TLS (DoH/DoT) resolution, which has started be...
research
10/19/2022

Hope of Delivery: Extracting User Locations From Mobile Instant Messengers

Mobile instant messengers such as WhatsApp use delivery status notificat...

Please sign up or login with your details

Forgot password? Click here to reset