Title :
IRONSIDES: DNS with no single-packet denial of service or remote code execution vulnerabilities
Author :
Carlisle, Michael ; Fagin, B.
Author_Institution :
Dept. of Comput. Sci., US Air Force Acad., Colorado Springs, CO, USA
Abstract :
We describe the development of IRONSIDES, an implementation of DNS that is provably invulnerable to remote code execution exploits and single-packet denial of service attacks. Our experimental results show it to be over three times as fast as BIND, the most common implementation of DNS.
Keywords :
Internet; codes; telecommunication services; BIND; DNS; IRONSIDES; Internet domain name system; remote code execution vulnerability; single-packet denial of service attack; DNS; buffer overflow; computer security; denial of service; network security; remote execution;
Conference_Titel :
Global Communications Conference (GLOBECOM), 2012 IEEE
Conference_Location :
Anaheim, CA
Print_ISBN :
978-1-4673-0920-2
Electronic_ISBN :
1930-529X
DOI :
10.1109/GLOCOM.2012.6503217