Effects of secured DNS transport on resolver performance - Sorbonne Université
Conference Papers Year : 2023

Effects of secured DNS transport on resolver performance

Abstract

Designed 40 years ago, DNS is still a core component of internet: billions of DNS queries are processed each day to resolve domain names to IP addresses. Originally designed for performances and scalability, its transport protocol is unencrypted, leading to security flaws. Recently, secure protocols have emerged, but the question of their scalability and sustainability remains open. In this paper we study the cost of switching from the legacy DNS transport to the newer ones, by first characterising the shape of the traffic between clients and secured public resolvers. Then, we replicate said traffic, to measure the added cost of each protocol. We found that, while connections usually stayed open, many closures and openings were made in some cases. Comparing these profiles over different DNS transports, we observe that switching from the legacy protocol to a more secure one can lead to an important performance penalty.
Fichier principal
Vignette du fichier
article.pdf (491.7 Ko) Télécharger le fichier
Origin Files produced by the author(s)
Licence
Copyright

Dates and versions

hal-04220131 , version 1 (27-09-2023)

Licence

Copyright

Identifiers

Cite

Etienne Le Louet, Antoine Blin, Julien Sopena, Ahmed Amamou, Kamel Haddadou. Effects of secured DNS transport on resolver performance. 2023 IEEE Symposium on Computers and Communications (ISCC), Jul 2023, Gammarth, Tunisia. pp.238-244, ⟨10.1109/ISCC58397.2023.10217887⟩. ⟨hal-04220131⟩
105 View
89 Download

Altmetric

Share

More