ATIS I-0000079

Technical Impacts if DNS Privacy and Security on Network Service Scenarios

The Alliance for Telecommunications Industry Solutions, 04/01/2020

Publisher: ATIS

File Format: PDF

$144.00$289.52


Published:01/04/2020

Pages:40

File Size:1 file , 1.7 MB

Note:This product is unavailable in Ukraine, Russia, Belarus

The domain name system (DNS) is a key network function used to resolve domain names (e.g., atis.org) into routable addresses and other data. Most DNS signalling today is sent using protocols that do not support security provisions (e.g., cryptographic confidentiality protection and integrity protection). This may create privacy and security risks for users due to on-path nodes being able to read or modify DNS signalling.

In response to these concerns, particularly for DNS privacy, new protocols have been specified that implement cryptographic DNS security. Support for these protocols is being rapidly introduced in client software (particularly web browsers) and in some DNS servers.

The implementation of DNS security protocols can have a range of positive benefits, but it can also conflict with important network services that are currently widely implemented based on DNS. These services include techniques to mitigate malware and to fulfill legal obligations placed on network operators. This report describes the technical impacts of DNS security protocols in a range of network scenarios. This analysis is used to derive recommendations for deploying DNS security protocols and for further industry collaboration. The aim of these recommendations is to maximize the benefits of DNS security support while reducing problem areas.

More ATIS standard pdf

ATIS 0300208.2013 (S2023)

ATIS 0300208.2013 (S2023)

Operations, Administration, Maintenance, and Provisioning (OAM&P) -Upper-Layer Protocols for Telecommunications Management Network (TMN) Interfaces, Q and X Interfaces

$15.00 $30.00

ATIS 0300002.2013

ATIS 0300002.2013

XML Schema Interface for POTS Service Test

$123.00 $246.42

ATIS 0300247.2013

ATIS 0300247.2013

Operations, Administration, Maintenance, and Provisioning (OAM&P) - Performance Management Functional Area Services and Information Mode for Interfaces between Operations Systems and Network Elements

$137.00 $275.00

ATIS 0300097.2013

ATIS 0300097.2013

Structure for the Identification of Telecommunications Connections for Information Exchange

$138.00 $277.37