ATIS I-0000079

Technical Impacts if DNS Privacy and Security on Network Service Scenarios

The Alliance for Telecommunications Industry Solutions, 04/01/2020

Publisher: ATIS

File Format: PDF

$144.00$289.52


Published:01/04/2020

Pages:40

File Size:1 file , 1.7 MB

Note:This product is unavailable in Ukraine, Russia, Belarus

The domain name system (DNS) is a key network function used to resolve domain names (e.g., atis.org) into routable addresses and other data. Most DNS signalling today is sent using protocols that do not support security provisions (e.g., cryptographic confidentiality protection and integrity protection). This may create privacy and security risks for users due to on-path nodes being able to read or modify DNS signalling.

In response to these concerns, particularly for DNS privacy, new protocols have been specified that implement cryptographic DNS security. Support for these protocols is being rapidly introduced in client software (particularly web browsers) and in some DNS servers.

The implementation of DNS security protocols can have a range of positive benefits, but it can also conflict with important network services that are currently widely implemented based on DNS. These services include techniques to mitigate malware and to fulfill legal obligations placed on network operators. This report describes the technical impacts of DNS security protocols in a range of network scenarios. This analysis is used to derive recommendations for deploying DNS security protocols and for further industry collaboration. The aim of these recommendations is to maximize the benefits of DNS security support while reducing problem areas.

More ATIS standard pdf

ATIS 0300217.1991(R2007)

ATIS 0300217.1991(R2007)

Integrated Service Digital Network (ISDN) Management – Primary Rate Physical Layer (formerly T1.217-1991 (R2007) )

$125.00 $251.53

ATIS 0300219.1991(R2007)

ATIS 0300219.1991(R2007)

Integrated Services Digital Network (ISDN) Management – Overview and Principles (formerly T1.219-1991 (R2007) )

$103.00 $207.95

ATIS T1.TR.08-1991

ATIS T1.TR.08-1991

Jitter Measurement Methodology

$72.00 $145.00

ATIS 1000614.1991(S2017)

ATIS 1000614.1991(S2017)

Integrated Services Digital Network (ISDN) - Packet Mode Bearer Service Category Description (formerly T1.614-1991 (R2007) )

$30.00 $60.00