刘文峰(1992-),男,博士生,主要研究领域为域名系统,区块链.
张宇(1979-),男,博士,副教授,CCF高级会员,主要研究领域为互联网基础设施安全,网络拓扑测量,未来网络体系.
张宏莉(1973-),女,博士,教授,博士生导师,CCF专业会员,主要研究领域为网络信息安全, 信息内容安全.
方滨兴(1960-),男,博士,教授,博士生导师,CCF会士,主要研究领域为网络信息安全, 信息内容安全.
张宇,yuzhang@hit.edu.cn
TP393
国家重点研发计划 (SQ2018YFB1800702, 2016YFB0801303)
National Key Research and Development Project (SQ2018YFB1800702, 2016YFB0801303)
域名系统(domain name system, DNS)测量研究是深入理解DNS的重要研究方式. 从组件、结构、流量、安全4个方面对近30年 (1992–2019) 的DNS测量研究工作梳理出18个主题. 首先, 介绍组件测量, 组件有解析器和权威服务器两种, 解析器测量包括公共解析器、开放解析器、解析器缓存、解析器选择策略4个主题, 权威服务器包括性能、任播部署、托管、误配置4个主题. 其次, 阐述结构测量, 包括桩解析器与解析器的依赖结构、解析器间依赖结构、域名解析依赖结构3个主题. 然后, 描述流量测量, 包括查询流量特征、异常根查询流量、流量拦截共3个主题. 最后综述了安全测量, 包括DNSSEC代价与隐患、DNSSEC部署进展、加密DNS部署、恶意域名检测4个主题.
Domain name system (DNS) measurement research is an important way to understand DNS. This paper reviews the DNS measurement work during 1992 and 2019 on 18 topics from four aspects of components, structure, traffic, and security. Firstly, in the aspect of components, the four resolver-related topics are on public resolver, open resolver, resolver caching, and resolver selection policy; the four authoritative-server-related topics are on performance, anycast deployment, hosting, and misconfigurations. Secondly, in the aspect of structure, there are three topics: the dependency structure between stub resolvers and resolvers, the dependency structure of resolvers, and the dependency structure of domain name resolution. Then, in the aspect of traffic, there are three topics: query traffic characteristics, abnormal root query traffic, and traffic interception. Moreover, in the aspect of security, there are four topics: DNSSEC cost and risk, DNSSEC deployment, DNS encryption deployment, and malicious domain name detection. Finally, future research topics are discussed.
刘文峰,张宇,张宏莉,方滨兴.域名系统测量研究综述.软件学报,2022,33(1):211-232
复制