Measuring DNS Source Port Randomness
Duane Wessels DNS-OARC 1st CAIDA/WIDE/CASFI Workshop August 15, 2008
CAIDA+WIDE+CASFI #1 DNS-OARC
Measuring DNS Source Port Randomness Duane Wessels DNS-OARC 1st - - PowerPoint PPT Presentation
Measuring DNS Source Port Randomness Duane Wessels DNS-OARC 1st CAIDA/WIDE/CASFI Workshop August 15, 2008 CAIDA+WIDE+CASFI #1 0 DNS-OARC Kaminsky DNS sucks. Okay, Im paraphrashing... Use random source ports to protect from
CAIDA+WIDE+CASFI #1 DNS-OARC
CAIDA+WIDE+CASFI #1 1 DNS-OARC
CAIDA+WIDE+CASFI #1 2 DNS-OARC
CAIDA+WIDE+CASFI #1 3 DNS-OARC
CAIDA+WIDE+CASFI #1 4 DNS-OARC
CAIDA+WIDE+CASFI #1 5 DNS-OARC
CAIDA+WIDE+CASFI #1 6 DNS-OARC
CAIDA+WIDE+CASFI #1 7 DNS-OARC
Date
7 Jul08 14 21 28 4 Aug08 11 18
Queries per Day (Thousands)
10 20 30 40 50 60 70
VU#800113 published porttest written proper logging Leaked
Date
7 Jul08 14 21 28 4 Aug08 11 18
Percentage
20 40 60 80 100 Whitelisted Poor Good Great
CAIDA+WIDE+CASFI #1 11 DNS-OARC
CAIDA+WIDE+CASFI #1 12 DNS-OARC
CAIDA+WIDE+CASFI #1 13 DNS-OARC
Date
14 Jul08 21 28 4 Aug08 11 18
Queries per Day (Thousands)
20 40 60 80 100 120
Date
14 Jul08 21 28 4 Aug08 11 18
Percentage
20 40 60 80 100 Whitelisted Poor Good Great
CAIDA+WIDE+CASFI #1 18 DNS-OARC
CAIDA+WIDE+CASFI #1 19 DNS-OARC