Dns Protection Against Spoofing and Poisoning Attacks

Mohammed Abdulridha Hussain,Hai Jin,Zaid Alaa Hussien,Zaid Ameen Abduljabbar,Salah H. Abbdal,Ayad Ibrahim
DOI: https://doi.org/10.1109/icisce.2016.279
2016-01-01
Abstract:Domain name system is among the core part of TCP/IP protocol suite and the standard protocol used by the Internet. The domain name system consists of mapped website names with Internet protocol, which facilitates browsing by not requiring users to remember numeric notation addresses. The nature of the system, which involves transferring information in plain text, makes it vulnerable to security attacks. The domain name system suffers from spoofing and cache poisoning attacks that are intended to steal the private information of users. In this paper, a scheme is proposed to prevent the aforementioned attacks by using an asymmetric cipher to encrypt the important information in messages and to protect these messages from manipulation. The proposed scheme is examined and implemented using Linux platform and C programming language. The proposed scheme protects DNS against spoofing and poisoning attacks while the results show small fraction of delay in time comparing with the applied DNS. There are also additional commercial benefits since it does not result in additional costs.
What problem does this paper attempt to address?