Privacy-preserving DNS: analysis of broadcast, range queries and mix-based protection methods

  • Authors:
  • Hannes Federrath;Karl-Peter Fuchs;Dominik Herrmann;Christopher Piosecny

  • Affiliations:
  • Computer Science Department, University of Hamburg, Germany;Computer Science Department, University of Hamburg, Germany;Computer Science Department, University of Hamburg, Germany;Dept. of Management Information Systems, University of Regensburg, Germany

  • Venue:
  • ESORICS'11 Proceedings of the 16th European conference on Research in computer security
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

We propose a dedicated DNS Anonymity Service which protects users' privacy. The design consists of two building blocks: a broadcast scheme for the distribution of a "top list" of DNS hostnames, and low-latency Mixes for requesting the remaining hostnames unobservably. We show that broadcasting the 10,000 most frequently queried hostnames allows zero-latency lookups for over 80% of DNS queries at reasonable cost. We demonstrate that the performance of the previously proposed Range Queries approach severely suffers from high lookup latencies in a real-world scenario.