发明名称 Method and apparatus for creating a list of trustworthy DNS clients
摘要 A computer receives a resolver profile (730) for a resolver sending queries to a domain name server. The resolver profile is based on any, or a combination, of a top-talker status of the resolver (710), a normalcy of distribution of domain names queried (715), a continuity of distribution of query type (720, 725), and a RD bit status (727), and information related to query traffic based on the topology of the domain name server (729). Resolver profiles can be compared to a trust policy (735) to determine whether the resolver is trustworthy (740). Resolvers deemed trustworthy can be added to a list of trustworthy resolvers (745). Embodiments can detect the occurrence of a network-based attack, in particular a DDoS-attack. Embodiments can mitigate the effect of a network-based attack by responding only to queries from resolvers on the list of trustworthy resolvers (750, 760).
申请公布号 EP2779591(A2) 申请公布日期 2014.09.17
申请号 EP20140159620 申请日期 2014.03.13
申请人 VERISIGN, INC. 发明人 OSTERWEIL, ERIC;MCPHERSON, DANNY
分类号 H04L29/12;H04L29/06 主分类号 H04L29/12
代理机构 代理人
主权项
地址