A First Look at QNAME Minimization in the Domain Name System

The Domain Name System (DNS) is a critical part of network and Internet infrastructure; DNS lookups precede almost any user request. DNS lookups may contain private information about the sites and services a user contacts, which has spawned efforts to protect privacy of users, such as transport encryption through DNS-over-TLS or DNS-over-HTTPS.

[1]  Paul E. Hoffman,et al.  DNS Queries over HTTPS (DoH) , 2018, RFC.

[2]  Giovane C. M. Moura,et al.  ENTRADA: A high-performance network traffic data streaming warehouse , 2016, NOMS 2016 - 2016 IEEE/IFIP Network Operations and Management Symposium.

[3]  Mark Allman,et al.  Ethical considerations in network measurement papers , 2016, Commun. ACM.

[4]  Stephane Bortzmeyer,et al.  DNS Privacy Considerations , 2015, RFC.

[5]  Aleksandra Korolova,et al.  Enumerating Privacy Leaks in DNS Data Collected above the Recursive ( Short paper ) , 2017 .

[6]  Narseo Vallina-Rodriguez,et al.  A Long Way to the Top: Significance, Structure, and Stability of Internet Top Lists , 2018, Internet Measurement Conference.

[7]  Scott Rose,et al.  Protocol Modifications for the DNS Security Extensions , 2005, RFC.

[8]  Scott Rose,et al.  DNS Security Introduction and Requirements , 2005, RFC.

[9]  D. Dittrich,et al.  The Menlo Report: Ethical Principles Guiding Information and Communication Technology Research , 2012 .

[10]  Paul E. Hoffman,et al.  Specification for DNS over Transport Layer Security (TLS) , 2016, RFC.

[11]  Kazunori Fujiwara,et al.  Aggressive Use of DNSSEC-Validated Cache , 2017, RFC.

[12]  Wes Hardaker Analyzing and Mitigating Privacy with the DNS Root Service , 2018 .

[13]  Marit Hansen,et al.  Privacy Considerations for Internet Protocols , 2022 .

[14]  Daniel Massey,et al.  Impact of configuration errors on DNS robustness , 2004, IEEE Journal on Selected Areas in Communications.

[15]  Scott Rose,et al.  Resource Records for the DNS Security Extensions , 2005, RFC.

[16]  Duane Wessels,et al.  A day at the root of the internet , 2008, CCRV.

[17]  Paul V. Mockapetris,et al.  Domain names: Concepts and facilities , 1983, RFC.

[18]  Stephane Bortzmeyer DNS Query Name Minimisation to Improve Privacy , 2016, RFC.

[19]  Eric Wustrow,et al.  ZMap: Fast Internet-wide Scanning and Its Security Applications , 2013, USENIX Security Symposium.

[20]  Nick Feamster,et al.  Oblivious DNS: Practical Privacy for DNS Queries , 2018, Proc. Priv. Enhancing Technol..

[21]  Zheng Wang,et al.  Understanding the Performance and Challenges of DNS Query Name Minimization , 2018, 2018 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications/ 12th IEEE International Conference On Big Data Science And Engineering (TrustCom/BigDataSE).

[22]  Stephane Bortzmeyer,et al.  NXDOMAIN: There Really Is Nothing Underneath , 2016, RFC.