ATIS I-0000079

Technical Impacts if DNS Privacy and Security on Network Service Scenarios

The Alliance for Telecommunications Industry Solutions, 04/01/2020

Publisher: ATIS

File Format: PDF

$144.00$289.52


Published:01/04/2020

Pages:40

File Size:1 file , 1.7 MB

Note:This product is unavailable in Ukraine, Russia, Belarus

The domain name system (DNS) is a key network function used to resolve domain names (e.g., atis.org) into routable addresses and other data. Most DNS signalling today is sent using protocols that do not support security provisions (e.g., cryptographic confidentiality protection and integrity protection). This may create privacy and security risks for users due to on-path nodes being able to read or modify DNS signalling.

In response to these concerns, particularly for DNS privacy, new protocols have been specified that implement cryptographic DNS security. Support for these protocols is being rapidly introduced in client software (particularly web browsers) and in some DNS servers.

The implementation of DNS security protocols can have a range of positive benefits, but it can also conflict with important network services that are currently widely implemented based on DNS. These services include techniques to mitigate malware and to fulfill legal obligations placed on network operators. This report describes the technical impacts of DNS security protocols in a range of network scenarios. This analysis is used to derive recommendations for deploying DNS security protocols and for further industry collaboration. The aim of these recommendations is to maximize the benefits of DNS security support while reducing problem areas.

More ATIS standard pdf

ATIS T1.TRQ.5-2001

ATIS T1.TRQ.5-2001

Maximum Voltage, Current, and Power Levels In Network-Powered Transport Systems

$30.00 $60.00

ATIS T1.TR.66-2001

ATIS T1.TR.66-2001

Requirements for Wireless Internet Protocol (IP) Telephony

$72.00 $145.00

ATIS 0404130-0014

ATIS 0404130-0014

Design Layout Report Guidelines For Access Service - Industry Support Interface (DLR-ISI)

$137.00 $275.00

ATIS T1.TRQ.1-2001

ATIS T1.TRQ.1-2001

Number Portability Operator Services Switching Systems (Revision of T1.TRQ.1-1999)

$110.00 $220.00