BR112022005669A2 - Sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns - Google Patents

Sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns

Info

Publication number
BR112022005669A2
BR112022005669A2 BR112022005669A BR112022005669A BR112022005669A2 BR 112022005669 A2 BR112022005669 A2 BR 112022005669A2 BR 112022005669 A BR112022005669 A BR 112022005669A BR 112022005669 A BR112022005669 A BR 112022005669A BR 112022005669 A2 BR112022005669 A2 BR 112022005669A2
Authority
BR
Brazil
Prior art keywords
dns
proxy
network performance
encrypted
access schemes
Prior art date
Application number
BR112022005669A
Other languages
English (en)
Inventor
Ganeshan Ramachandran
George Choquette
Robert Torres
Original Assignee
Hughes Network Systems Llc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hughes Network Systems Llc filed Critical Hughes Network Systems Llc
Publication of BR112022005669A2 publication Critical patent/BR112022005669A2/pt

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04BTRANSMISSION
    • H04B7/00Radio transmission systems, i.e. using radiation field
    • H04B7/14Relay systems
    • H04B7/15Active relay systems
    • H04B7/185Space-based or airborne stations; Stations for satellite systems
    • H04B7/18523Satellite systems for providing broadcast service to terrestrial stations, i.e. broadcast satellite service
    • H04B7/18526Arrangements for data linking, networking or transporting, or for controlling an end to end session
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04BTRANSMISSION
    • H04B7/00Radio transmission systems, i.e. using radiation field
    • H04B7/14Relay systems
    • H04B7/15Active relay systems
    • H04B7/185Space-based or airborne stations; Stations for satellite systems
    • H04B7/18578Satellite systems for providing broadband data service to individual earth stations
    • H04B7/18593Arrangements for preventing unauthorised access or for providing user protection
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • H04L12/16Arrangements for providing special services to substations
    • H04L12/18Arrangements for providing special services to substations for broadcast or conference, e.g. multicast
    • H04L12/1881Arrangements for providing special services to substations for broadcast or conference, e.g. multicast with schedule organisation, e.g. priority, sequence management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/45Network directories; Name-to-address mapping
    • H04L61/4505Network directories; Name-to-address mapping using standardised directories; using standardised directory access protocols
    • H04L61/4511Network directories; Name-to-address mapping using standardised directories; using standardised directory access protocols using domain name system [DNS]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/108Network architectures or network communication protocols for network security for controlling access to devices or network resources when the policy decisions are valid for a limited amount of time
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/16Implementing security features at a particular protocol layer
    • H04L63/164Implementing security features at a particular protocol layer at the network layer
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/03Protecting confidentiality, e.g. by encryption
    • H04W12/037Protecting confidentiality, e.g. by encryption of the control plane, e.g. signalling traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/60Context-dependent security
    • H04W12/61Time-dependent

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computing Systems (AREA)
  • Astronomy & Astrophysics (AREA)
  • General Physics & Mathematics (AREA)
  • Aviation & Aerospace Engineering (AREA)
  • Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns. um processo para melhorar o desempenho de rede em sistemas que utilizam esquemas de sistema de nome de domínio seguro (dns). as solicitações dns criptografadas de dispositivos em uma rede de área local (lan), tal como uma casa ou escritório, são enviadas a um proxy local que armazena registros dns em cache. o proxy descriptografa ou examina pelo menos uma parte da solicitação dns para procurar um registro correspondente em seu armazenamento. os registros correspondentes são recuperados, criptografados e fornecidos ao dispositivo solicitante para atender à solicitação dns. se o proxy não contiver um registro correspondente, a consulta dns será criptografada e enviada a um servidor dns externo para resolução. o registro correspondente pode opcionalmente ser salvo pelo proxy antes de ser fornecido ao dispositivo solicitante.
BR112022005669A 2019-09-25 2020-09-24 Sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns BR112022005669A2 (pt)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US16/583,004 US11438763B2 (en) 2019-09-25 2019-09-25 System and method for improving network performance when using secure DNS access schemes
PCT/US2020/052427 WO2021061937A1 (en) 2019-09-25 2020-09-24 System and method for improving network performance when using secure dns access schemes

Publications (1)

Publication Number Publication Date
BR112022005669A2 true BR112022005669A2 (pt) 2022-06-21

Family

ID=74881429

Family Applications (1)

Application Number Title Priority Date Filing Date
BR112022005669A BR112022005669A2 (pt) 2019-09-25 2020-09-24 Sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns

Country Status (5)

Country Link
US (1) US11438763B2 (pt)
EP (1) EP4035303A4 (pt)
BR (1) BR112022005669A2 (pt)
CA (1) CA3152481A1 (pt)
WO (1) WO2021061937A1 (pt)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11444944B2 (en) * 2020-02-11 2022-09-13 Mcafee, Llc Privacy and security enabled domain name system with optional zero-touch provisioning
US11444931B1 (en) * 2020-06-24 2022-09-13 F5, Inc. Managing name server data
US20220385474A1 (en) * 2021-05-28 2022-12-01 Comcast Cable Communications, Llc Systems and methods for secure communication
US11552925B1 (en) * 2021-12-14 2023-01-10 Bitdefender IPR Management Ltd. Systems and methods of controlling internet access using encrypted DNS
GB2617168A (en) * 2022-03-31 2023-10-04 British Telecomm Data Transmission

Family Cites Families (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6976090B2 (en) * 2000-04-20 2005-12-13 Actona Technologies Ltd. Differentiated content and application delivery via internet
US7725602B2 (en) * 2000-07-19 2010-05-25 Akamai Technologies, Inc. Domain name resolution using a distributed DNS network
US20040073707A1 (en) * 2001-05-23 2004-04-15 Hughes Electronics Corporation Generating a list of network addresses for pre-loading a network address cache via multicast
US7152118B2 (en) 2002-02-25 2006-12-19 Broadcom Corporation System, method and computer program product for caching domain name system information on a network gateway
US7372809B2 (en) 2004-05-18 2008-05-13 Time Warner Cable, Inc. Thwarting denial of service attacks originating in a DOCSIS-compliant cable network
US8549148B2 (en) 2010-10-15 2013-10-01 Brocade Communications Systems, Inc. Domain name system security extensions (DNSSEC) for global server load balancing
WO2012061243A1 (en) 2010-11-05 2012-05-10 Citrix Systems, Inc. Systems and methods for managing domain name system security (dnssec)
US9015469B2 (en) 2011-07-28 2015-04-21 Cloudflare, Inc. Supporting secure sessions in a cloud-based proxy service
US9154479B1 (en) 2012-09-14 2015-10-06 Amazon Technologies, Inc. Secure proxy
US9596299B2 (en) * 2013-04-06 2017-03-14 Citrix Systems, Inc. Systems and methods for dynamically expanding load balancing pool
US9894041B2 (en) * 2015-09-25 2018-02-13 Microsoft Technology Licensing, Llc Secure domain name resolution in computer networks
US10289625B2 (en) * 2016-09-15 2019-05-14 Google Llc Providing context facts
US10033692B1 (en) * 2017-10-05 2018-07-24 Cloudflare, Inc. Managing domain name system (DNS) queries using a proxy DNS server

Also Published As

Publication number Publication date
US11438763B2 (en) 2022-09-06
EP4035303A1 (en) 2022-08-03
EP4035303A4 (en) 2023-10-04
US20210092595A1 (en) 2021-03-25
CA3152481A1 (en) 2021-04-01
WO2021061937A1 (en) 2021-04-01

Similar Documents

Publication Publication Date Title
BR112022005669A2 (pt) Sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns
US10356038B2 (en) Shared multi-tenant domain name system (DNS) server for virtual networks
JP5651179B2 (ja) キャッシュ保護
CN107533543B (zh) 具有本地高速缓存的分布式存储器高速缓存系统
US20160021114A1 (en) Method and Server of Remote Information Query
US20180351928A1 (en) Encryption key management system for cloud services
EP3338436B1 (en) Lock-free updates to a domain name blacklist
US20160314079A1 (en) Object memory management unit
TW200420031A (en) Method and apparatus for local IP address translation
US20150142845A1 (en) Smart database caching
CN102790809A (zh) 域名系统解析方法、装置及客户端
CN110609708B (zh) 用于数据处理的方法、设备和计算机可读介质
BR112022005665A2 (pt) Sistema e método para melhorar desempenho de rede ao usar esquemas seguros de acesso dns
US20120278558A1 (en) Structure-Aware Caching
US20200112537A1 (en) Domain-name-based network-connection attestation
EP3401792A1 (en) Virtual machine memory address assigning method and device
Cisco IP Management
US10666602B2 (en) Edge caching in edge-origin DNS
KR101944809B1 (ko) 도메인 네임 서버를 이용한 악성 코드 정보 조회 방법
JP4876092B2 (ja) トレースバック装置、プログラム、記録媒体、およびトレースバックシステム
JP5706956B1 (ja) データベースシステム及びデータベース制御方法
KR101364610B1 (ko) 웹 스토리지 객체를 이용하는 웹 사이트 접속 인증 방법 및 시스템
WO2020092624A3 (en) Mapping entry invalidation
JP2012238935A (ja) 名前管理サーバおよびアクセス制御方法
MAHDI et al. A Survey on Distributed, Concurrent, and Independent to Access Encrypted Cloud Databases