T2DNS: A Third-Party DNS Service with Privacy Preservation and Trustworthiness

Qingxiu Liu,Wenfei Wu,Qingsong Liu,Qun Huang
DOI: https://doi.org/10.1109/icccn49398.2020.9209638
2020-01-01
Abstract:We design a third-party DNS service named T 2 DNS. T 2 DNS serves client DNS queries with the following features: protecting clients from channel and server attackers, providing trustworthiness proof to clients, being compatible with the existing Internet infrastructure, and introducing bounded overhead. T 2 DNS’s privacy preservation is achieved by a hybrid protocol of encryption and obfuscation, and its service proxy is implemented on Intel SGX. We overcome the challenges of scaling the initialization process, bounding the obfuscation overhead, and tuning practical system parameters. We prototype T 2 DNS, and experiment results show that T 2 DNS is fully functional, has acceptable overhead in comparison with other solutions, and is scalable to the number of clients.
What problem does this paper attempt to address?