Patent · US Active

Secure domain name system

US9648004B2 · kind B2 · utility

7Cited by
1References
8Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 26, 2015
Grant dateMay 9, 2017
Priority date
Expiry dateOct 26, 2035

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/14
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method and system for authenticating answers to Domain Name System (DNS) queries originating from recursive DNS servers are provided. A verification component provides a verification that a DNS query originated from the recursive DNS server. An authoritative DNS server receives the query via a network, such as the Internet, and provides an answer to the query to an authentication component. The authentication component then provides an authentication, such as a digital signature, which confirms that the received answer was provided by the authoritative DNS server, and then communicates the answer and the authentication to the verification component via the network. The verification component then verifies that the authentication corresponds to the received answer and sends the answer to the recursive DNS server. When the verification component receives an answer in the absence of a corresponding authentication, the verification component drops the answer.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.