Information security – Access control or authentication – Network
Reexamination Certificate
2007-11-20
2007-11-20
Zand, Kambiz (Department: 2134)
Information security
Access control or authentication
Network
C726S026000
Reexamination Certificate
active
10427458
ABSTRACT:
Methods, systems, and computer program products for resolving domain name system records based on client authentication. Basing domain name resolution on client authentication provides remote clients with the convenience of domain names, without sacrificing the security of keeping potentially sensitive domain names private. An authoritative name server receives requests for domain name resolution from clients. For requests without client authentication, the authoritative name server responds that the domain name cannot be found. This response identifies the authoritative name server to the client so that the client can submit subsequent requests with client authentication. For requests with client authentication, the authoritative name server responds with the corresponding domain name addresses. Client may communicate domain name resolution requests directly to the authoritative name server or indirection, through one or more intermediate domain name servers. Client authentication may occur over a secure connection with the authoritative name server.
REFERENCES:
patent: 5777989 (1998-07-01), McGarvey
patent: 6119234 (2000-09-01), Aziz et al.
patent: 6381627 (2002-04-01), Kwan et al.
patent: 6411966 (2002-06-01), Kwan et al.
patent: 6434600 (2002-08-01), Waite et al.
patent: 6578066 (2003-06-01), Logan et al.
patent: 6728767 (2004-04-01), Day et al.
patent: 6907525 (2005-06-01), Pazi et al.
Vixie, Paul; “DNS and Bind Security Issues”; Proceedings of the 5th Usenx Iunix Security Symposium; Jun. 5-7, 1995; p. 209-216.
Xunhau Wang; Yih Huang; Yvo Desmendt; and Rine, David; “Enabling Secure On-Line DNS Dynamic Update”; Computer Security Applications, 2000. ACSAC '00 16th Annual Conference; Dec. 11-15, 2000; p. 52-58.
Le, Van and Guyennet, Herve; “IPSEC and DNSSEC to Support Grid Application Security”; Proceedings of the 2nd IEEE/ACM International Symposium on Cluster Computing and the Grid ( CCGRID2002); May 21-24, 2002; p. 425-426.
Massey, Daniel; Lewis, Ed; Gudmundsson, Olafur; Mundy, Russ; and Mankin, Allison; “Public Key Validation for the DNS Security Extension”; Proceedings of the DARPA Information Survivablity Conference & Exposition II (DISCEX '01); Jun. 12-14, 2001; vol. 1; p. 227-238.
Jim, Trevor; “SD3: A Trust Management System With Certified Evaluation”; Proceedings of the 2001 IEEE Symposium on Security and Privacy; May 14-16, 2001; p. 106-115.
Davidowicz, Diane and Vixie, Paul; “Securing the Domain Name System”;Network Magazine; Jan. 2000; vol. 15, No. 1; p. 92-94 and 96-97.
Eastlake, D. and Kaufman, C.; “Domain Name System Security Extensions”; <http://www.ietf.org/rfc/rfc2065.txt?number=2065>; visited Jul. 7, 2003; p. 1-41.
Eastlake, D., “Domain Name System Security Extensions”; <http://www.ietf.org/rfc/rfc2535.txt?number=2524>; visited Jul. 7, 2003; p. 1-47.
Mockapetris, P.; “Domain Names—Implementation and Specification”; <http://www.ietf.org/rfc/rfc1035.txt?number=1035>; visited Jul. 7, 2003; p. 1-55.
Mockapetris, P.; “Domain Names—Concepts and Facilities”; <http://www.ietf.org/rfc/rfc1034.txt?number=1034>; visited Jul. 7, 2003; p. 1-55.
Elz, R. and Bush, R.; “Clarifications to the DNS Specification”; <http://www.ietf.org/rfc/rfc2181.txt?number=2181>; visited Jul. 7, 2003; p. 1-15.
Baba, T.; “Requirements for Access Control in Domain Name Systems”; <http://www.ietf.org/internet-drafts/draft-baba-dnsext-acl-requts-00.txt>; visited Jul. 7, 2003; p. 1-6.
Lioy, Antonio; Maino, Fabio; Marian, Marius; and Mazzocchi, Daniele; “DNS Security”; Proceedings of the Terena Networking Conference; May 22-25, 2000; p. 1-13.
Gilroy James M.
Shelest Art
Powers William S
Workman Nydegger
Zand Kambiz
LandOfFree
Authenticated domain name resolution does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Authenticated domain name resolution, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Authenticated domain name resolution will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3858050