Vanishing Point - Resilient DNSSEC Key Repository
Upcoming SlideShare
Loading in...5
×

Like this? Share it with your network

Share

Vanishing Point - Resilient DNSSEC Key Repository

  • 728 views
Uploaded on

Security analysis of DNS: provides an overview of DNSSEC architecture and limitations, and highlights some of its problems: lack of resilience, multiple-root scenario, lack of isolation, legacy and......

Security analysis of DNS: provides an overview of DNSSEC architecture and limitations, and highlights some of its problems: lack of resilience, multiple-root scenario, lack of isolation, legacy and Trust Anchor Management. DNSSEC Lookaside Validation (DLV) addresses most of these problems but not only it fails in providing resilience but also it devotes the root of trust of a zone into a unique trusted entity.
We propose Vanishing Point for solving the highlighted problems of DNSSEC. Vanishing Point is a resilient DNSSEC Key Repository Service that allows lookaside validation without relying solely on a PKI infrastructure.

Paper: http://dev.sig9.net/files/ResearchProject.pdf

More in: Technology
  • Full Name Full Name Comment goes here.
    Are you sure you want to
    Your message goes here
    Be the first to comment
    Be the first to like this
No Downloads

Views

Total Views
728
On Slideshare
727
From Embeds
1
Number of Embeds
1

Actions

Shares
Downloads
6
Comments
0
Likes
0

Embeds 1

http://www.linkedin.com 1

Report content

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate.

Cancel
    No notes for slide

Transcript

  • 1. DNSSEC-aware Cache Resolver { message }
  • 2. DNSSEC-aware Cache Resolver example.net { message } K2 another.net { message } K3