CN103763406A - DNS overall monitoring method and system - Google Patents

DNS overall monitoring method and system Download PDF

Info

Publication number
CN103763406A
CN103763406A CN201410035791.1A CN201410035791A CN103763406A CN 103763406 A CN103763406 A CN 103763406A CN 201410035791 A CN201410035791 A CN 201410035791A CN 103763406 A CN103763406 A CN 103763406A
Authority
CN
China
Prior art keywords
domain name
server
dns
region
node
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410035791.1A
Other languages
Chinese (zh)
Inventor
韩枫
蒋超
陈政璋
刘贵荣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
BEILONG KNET (BEIJING) TECHNOLOGY Co Ltd
INTERNET DOMAIN NAME SYSTEM BEIJING ENGINEERING RESEARCH CENTER LLC
Original Assignee
BEILONG KNET (BEIJING) TECHNOLOGY Co Ltd
INTERNET DOMAIN NAME SYSTEM BEIJING ENGINEERING RESEARCH CENTER LLC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by BEILONG KNET (BEIJING) TECHNOLOGY Co Ltd, INTERNET DOMAIN NAME SYSTEM BEIJING ENGINEERING RESEARCH CENTER LLC filed Critical BEILONG KNET (BEIJING) TECHNOLOGY Co Ltd
Priority to CN201410035791.1A priority Critical patent/CN103763406A/en
Publication of CN103763406A publication Critical patent/CN103763406A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention provides a DNS overall monitoring method and system. The method comprises the steps that DNS records are acquired, and domain name regions and authority servers in charge of the domain name regions are obtained; a domain name tree comprising multiple nodes is established, wherein one node corresponds to one domain name region; whether the DNS record of the authority server of the node of the superior domain name region is consistent with the DNS record of the authority server of the node of the current domain name region is detected; if not, it is detected that the authority server of the current domain name region runs abnormally; if it is detected that the DNS record of the authority server of the node of the superior domain name region is consistent with the DNS record of the authority server of the node of the current domain name region, whether the authority server of each node can provide normal DNS analysis is judged; if not, it is judged that the authority server of the current domain name region runs abnormally. According to the technical scheme, the running condition of the current authority server can be reflected in time, the current DNS overall running condition can be reflected reliably, and therefore reliable diagnosis and recovery information is provided when a DNS breaks down.

Description

DNS overall monitoring method and system thereof
Technical field
The invention belongs to communication technical field, be specifically related to a kind of DNS overall monitoring method and system thereof.
Background technology
Name server (Domain Name Server is called for short DNS) has been mainly used in mapping and other Internet resources of from domain name to Internet protocol address (Internet Protocol is called for short IP) and has resolved.
The network address of input when Internet user surfs the Net, needs first by dns server, to carry out domain name mapping, finds corresponding IP address, then could surf the Net.If domain name mapping paralysis, may cause the large-area paralysis in the Internet, DNS is related to the lifeblood whether whole internet, applications works well thus.Therefore, whether DNS operation is normally carried out to global monitoring most important.
DNS domain name system is the distributed data base of classification, take domain name as index.Name space is organized into a tree, and as shown in Figure 1, each node on tree and lower all nodes thereof are territories, and uppermost is rhizosphere, under rhizosphere, is TLD, then is other subdomains below.Domain name is from root, arrives the set of all territories sign of present node, between each sign, from left to right uses successively ". " to distinguish.
Whole name space can be divided into a plurality of regions, a district inclusion a continuous part on DNS tree.Dns server be take region and is come management domain name space as unit, and the dns server of administering certain region becomes the authoritative name server in this region, it is through upper level mandate, have the district's file that comprises whole district full detail, the domain name of being responsible in Dui Gai district is resolved, and it can be delegated to other servers resolving to authorize simultaneously.
Accordingly, the recursive query process of domain name mapping is as follows: for the domain name " www.baidu.com " of client-requested, first DNS recursion server inquires root name server, root name server returns to the authoritative name server address in " .com " territory, recursion server is the authoritative name server in inquiry " .com " territory then, obtain the authoritative name server address in " baidu.com " territory, recursion server is inquired the authoritative name server in " .baidu.com " territory again, obtain having the A record of the IP address corresponding with " www.baidu.com ", deposit local cache in and return to client.
At present, domain name quantity crosses hundred million, and domain name region is various numerous and disorderly, there is no concrete statistics, and the whether healthy normal operation of dns server, lacks direct authentic communication.
Summary of the invention
A kind of DNS overall monitoring method provided by the invention and system thereof, it can reflect the operation conditions of current authoritative server in time, and reflects reliably current DNS overall situation operation conditions, and reliable diagnosis and recovery information are provided while breaking down for dns server.
For achieving the above object, the invention provides a kind of DNS overall monitoring method, the method comprises:
Obtain name server record, the authoritative server that obtains domain name region and be responsible for this region;
Foundation comprises the tree of domain names of a plurality of nodes, a corresponding domain name region of node;
Whether the name server record that detects higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region is consistent, and if not, the authoritative server operation that detects region at the corresponding levels is not normal;
If it is consistent to detect the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, whether the authoritative server that judges each node can provide normal dns resolution, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.
Further, described in, obtaining name server record comprises:
Utilize the domain name that in recursion server journal file, user inquired about, obtain name server record;
Or initiate one and survey this domain name request and whether exist from the domain name request of writing, if exist, obtain name server record.
Further, if judge the authoritative server of each node, can provide normal dns resolution, the authoritative server normal operation in domain name at the corresponding levels region.
Further, also comprise:
Existing node in setting by nslookup, and the domain name of the recurrence daily record of resetting new and detection structure realizes periodically updating of tree of domain names.
Further, also comprise:
If when the name server record of the node authoritative server in domain name tree changes, historical data is backuped in database before upgrading.
Further, if node authoritative server is supported DNS security extension, can be by the ruuning situation of DNS security extension monitoring dns server.
For achieving the above object, the invention provides a kind of DNS global monitoring system, this system comprises:
Acquiring unit, for obtaining name server record, the authoritative server that obtains domain name region and be responsible for this region;
Set up unit, for setting up the tree of domain names that comprises a plurality of nodes, a corresponding domain name region of node;
Detecting unit, whether consistent for detection of the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, if not, the authoritative server operation that detects region at the corresponding levels is not normal;
Judging unit, if detect the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region for detecting unit consistent, whether the authoritative server that judges each node can provide normal dns resolution, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.
Further, described acquiring unit obtains name server record and comprises:
Utilize the domain name that in recursion server journal file, user inquired about, obtain name server record;
Or initiate one and survey this domain name request and whether exist from the domain name request of writing, if exist, obtain name server record.
Further, if node authoritative server is supported DNS security extension, can be by the ruuning situation of DNS security extension monitoring dns server.
Further, described judging unit also for:
If judge the authoritative server of each node, can provide normal dns resolution, judge the authoritative server normal operation in domain name at the corresponding levels region.
In DNS overall monitoring method provided by the invention and system thereof, by the foundation of tree of domain names, can dispose a structure chart is clearly provided for the distribution in the current field name region, and because foundation and the proof procedure of tree of domain names is directly to obtain DNS data from authoritative server, these data are reacted the latest Status of current authoritative server timely, therefore can be more timely, reflect reliably current DNS global health situation, and can be the in the situation that of DNS fault, in conjunction with historical information, provide reliable diagnosis and recovery information.
Accompanying drawing explanation
Fig. 1 is the structural representation of tree of domain names of the prior art;
The schematic flow sheet of a kind of DNS overall monitoring method that Fig. 2 provides for the embodiment of the present invention one;
The schematic flow sheet of a kind of DNS global monitoring system that Fig. 3 provides for the embodiment of the present invention two.
Embodiment
For making those skilled in the art understand better technical scheme of the present invention, below in conjunction with the drawings and specific embodiments, the present invention is described in further detail.
The schematic flow sheet of a kind of DNS overall monitoring method that Fig. 2 provides for the embodiment of the present invention one, as shown in Figure 2, the method comprises:
Step S1, obtain name server record, the authoritative server that obtains domain name region and be responsible for this region.
Preferably, obtaining name server record comprises:
Utilize the domain name that in recursion server journal file, user inquired about, obtain name server record;
Or initiate one and survey this domain name request and whether exist from the domain name request of writing, if exist, obtain name server record.
In the present embodiment, realize the whether healthy normal operation of global monitoring dns server, can first obtain the nodes at different levels that exist in current tree of domain names, set up the deployment architecture figure of area distribution situation clearly, true and the credibility of the authoritative server of each region domain name mapping is responsible in then further checking, and whether the operation that detects authoritative server is normal simultaneously, if find, certain authoritative server operation is not normal, can take in time corresponding emergency measures.
Step S2, foundation comprise the tree of domain names of a plurality of nodes, a corresponding domain name region of node.
Particularly, name server record (Name Server, abbreviation NS) authoritative server of having listed region and being responsible for this region, in each node in tree of domain names, a corresponding domain name region of node, in higher level region, have one or more NS record, the NS record in higher level region and the NS in region at the corresponding levels record identical, the authoritative server that can obtain domain name region and be responsible for each domain name region by obtaining each NS record.
Whether the name server record of step S3, detection higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region is consistent, and if not, the authoritative server operation that detects region at the corresponding levels is not normal.
Particularly, whether identical with the authoritative server NS record of the node in region at the corresponding levels by detecting the authoritative server NS record of node in higher level region, if identical, whether the authoritative server that judges each node can provide normal dns resolution, if so, judge the authoritative server normal operation in domain name at the corresponding levels region.
If it is consistent that step S4 detects the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, whether the authoritative server that judges each node can provide normal dns resolution, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.
Particularly, if judge the authoritative server of each node, can provide normal dns resolution, the authoritative server normal operation in domain name at the corresponding levels region.
Further, because DNS system is originally in continuous variation, therefore tree of domain names need to periodically update to react real domain name structure, existing node in setting by nslookup, and the domain name of the recurrence daily record of resetting new and detection structure can realize periodically updating of tree of domain names.
Further, if when the name server of the node authoritative server in tree of domain names record changes, can be by before upgrading, historical data being backuped in database, the foundation that provides data to recover for case of emergency.
Preferably, if node authoritative server is supported DNS security extension (Domain Name System Security Extensions is called for short DNSSEC), can be by the ruuning situation of DNS security extension monitoring dns server.By the DNS security extension checking authority of response message and the genuine and believable property of integrality and each authoritative server.
Particularly, DNSSEC provides checking approach for recording, and it is attached to a series of digital signature in DNS hierarchical structure, and the PKI hashed value that a upper node is next node is carried out digital signature.For example be similar to the domain name of " www.knet.cn ", " .cn " signs to the key of " knet.cn ", signs to the key of " .cn " in root region.Resolver, in order to obtain the PKI of a certain designation area, has been constructed one " trust chain "." trust chain " is from root server, along DNS system, extend from top to bottom, PKI in Yi Ge district must record correspondingly with being stored in DS in father district, and DS records the private key signature in You Beifu district simultaneously, thereby sets up Yi Tiao uncle district to the evaluation chain in subarea.In proof procedure, DNSSEC traces back to root region along this trust chain always, and automatically uses " father " key authentication " son " key on this path.Therefore,, if certain trust chain has broken, this authoritative server moves the undesired or spoofing server of pretending to be.
If it is not normal to monitor certain authoritative server operation, the historical information of storage before can utilizing, the problem that reply dns server occurs adopts corresponding measure in time.
In the DNS overall monitoring method that the present embodiment provides, by the foundation of tree of domain names, can dispose a structure chart is clearly provided for the distribution in the current field name region, and because foundation and the proof procedure of tree of domain names is directly to obtain DNS data from authoritative server, these data are reacted the latest Status of current authoritative server timely, therefore can be more timely, reflect reliably current DNS global health situation, and can be the in the situation that of DNS fault, in conjunction with historical information, provide reliable diagnosis and recovery information.
The schematic flow sheet of a kind of DNS global monitoring system that Fig. 3 provides for the embodiment of the present invention two, as shown in Figure 3, this system comprises: acquiring unit 301, set up unit 302, detecting unit 303 and judging unit 304.Wherein, acquiring unit 301, for obtaining name server record, obtains the authoritative server in domain name region and responsible this region; Set up unit 302, for setting up the tree of domain names that comprises a plurality of nodes, a corresponding domain name region of node; Detecting unit 303, whether consistent for detection of the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, if not, the authoritative server operation that detects region at the corresponding levels is not normal; Judging unit 304, if detect the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region for detecting unit consistent, whether the authoritative server that judges each node can provide normal dns resolution, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.
Particularly, acquiring unit 301 obtains name server record, the authoritative server that obtains domain name region and be responsible for this region.Can obtain NS record by following two kinds of modes, comprise: utilize the domain name that in recursion server journal file, user inquired about, obtain name server record; Or initiate one and survey this domain name request and whether exist from the domain name request of writing, if exist, obtain name server record.Set up unit 302 and set up the tree of domain names that comprises a plurality of nodes, a corresponding domain name region of node, whether the name server that detecting unit 303 detects higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region records consistent, if not, the authoritative server that detects region at the corresponding levels moves not normal; If it is consistent that detecting unit detects the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, judging unit 304 judges whether the authoritative server of each node can provide normal dns resolution, if judge the authoritative server of each node, can provide normal dns resolution, the authoritative server normal operation in domain name at the corresponding levels region, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.If it is not normal to monitor certain authoritative server operation, the historical information of storage before can utilizing, the problem that reply dns server occurs adopts corresponding measure in time.
Alternatively, if node authoritative server is supported DNS security extension, can be by the ruuning situation of DNS security extension monitoring dns server.The execution mode of monitoring the ruuning situation of dns server by DNS security extension refers to above-described embodiment one, repeats no more herein.
In the present embodiment, due to name server (Name Server is called for short NS), record has been listed region and has been responsible for the authoritative server in this region, and the node in each tree, in higher level territory, have one or more NS records, they record identical with the NS in this territory.Therefore, by obtaining each NS record, can obtain domain name region, and the authoritative server in each region, set up thus tree of domain names.And by detecting the NS record in father district and subarea, whether there is common factor thus, check the operation conditions of dns server.
In the DNS global monitoring system that the present embodiment provides, by the foundation of tree of domain names, can dispose a structure chart is clearly provided for the distribution in the current field name region, and because foundation and the proof procedure of tree of domain names is directly to obtain DNS data from authoritative server, these data are reacted the latest Status of current authoritative server timely, therefore can be more timely, reflect reliably current DNS global health situation, and can be the in the situation that of DNS fault, in conjunction with historical information, provide reliable diagnosis and recovery information.
Be understandable that, above execution mode is only used to principle of the present invention is described and the illustrative embodiments that adopts, yet the present invention is not limited thereto.For those skilled in the art, without departing from the spirit and substance in the present invention, can make various modification and improvement, these modification and improvement are also considered as protection scope of the present invention.

Claims (10)

1. a DNS overall monitoring method, is characterized in that, comprising:
Obtain name server record, the authoritative server that obtains domain name region and be responsible for this region;
Foundation comprises the tree of domain names of a plurality of nodes, a corresponding domain name region of node;
Whether the name server record that detects higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region is consistent, and if not, the authoritative server operation that detects region at the corresponding levels is not normal;
If it is consistent to detect the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, whether the authoritative server that judges each node can provide normal dns resolution, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.
2. DNS overall monitoring method according to claim 1, is characterized in that, described in obtain name server record and comprise:
Utilize the domain name that in recursion server journal file, user inquired about, obtain name server record;
Or initiate one and survey this domain name request and whether exist from the domain name request of writing, if exist, obtain name server record.
3. DNS overall monitoring method according to claim 2, is characterized in that, can provide normal dns resolution, the authoritative server normal operation in domain name at the corresponding levels region if judge the authoritative server of each node.
4. DNS overall monitoring method according to claim 1, is characterized in that, also comprises:
Existing node in setting by nslookup, and the domain name of the recurrence daily record of resetting new and detection structure realizes periodically updating of tree of domain names.
5. DNS overall monitoring method according to claim 1, is characterized in that, also comprises:
If when the name server record of the node authoritative server in domain name tree changes, historical data is backuped in database before upgrading.
6. DNS overall monitoring method according to claim 1, is characterized in that,
If node authoritative server is supported DNS security extension, can be by the ruuning situation of DNS security extension monitoring dns server.
7. a DNS global monitoring system, is characterized in that, comprising:
Acquiring unit, for obtaining name server record, the authoritative server that obtains domain name region and be responsible for this region;
Set up unit, for setting up the tree of domain names that comprises a plurality of nodes, a corresponding domain name region of node;
Detecting unit, whether consistent for detection of the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region, if not, the authoritative server operation that detects region at the corresponding levels is not normal;
Judging unit, if detect the name server record of higher level's domain name region and the authoritative server of the node in domain name at the corresponding levels region for detecting unit consistent, whether the authoritative server that judges each node can provide normal dns resolution, if not, the authoritative server of judging domain name at the corresponding levels region moves not normal.
8. DNS global monitoring system according to claim 7, is characterized in that, described acquiring unit obtains name server record and comprises:
Utilize the domain name that in recursion server journal file, user inquired about, obtain name server record;
Or initiate one and survey this domain name request and whether exist from the domain name request of writing, if exist, obtain name server record.
9. DNS global monitoring system according to claim 7, is characterized in that, if node authoritative server is supported DNS security extension, and can be by the ruuning situation of DNS security extension monitoring dns server.
10. DNS global monitoring system according to claim 7, is characterized in that, described judging unit also for:
If judge the authoritative server of each node, can provide normal dns resolution, judge the authoritative server normal operation in domain name at the corresponding levels region.
CN201410035791.1A 2014-01-24 2014-01-24 DNS overall monitoring method and system Pending CN103763406A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410035791.1A CN103763406A (en) 2014-01-24 2014-01-24 DNS overall monitoring method and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410035791.1A CN103763406A (en) 2014-01-24 2014-01-24 DNS overall monitoring method and system

Publications (1)

Publication Number Publication Date
CN103763406A true CN103763406A (en) 2014-04-30

Family

ID=50530564

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410035791.1A Pending CN103763406A (en) 2014-01-24 2014-01-24 DNS overall monitoring method and system

Country Status (1)

Country Link
CN (1) CN103763406A (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104954505A (en) * 2015-06-12 2015-09-30 中国互联网络信息中心 Monitoring method and monitoring system for whole data updating process of DNS (Domain Name Server)
CN105391818A (en) * 2015-11-26 2016-03-09 中国互联网络信息中心 Authoritative name emergency resolution system and method based on recursive server
CN109995885A (en) * 2017-12-30 2019-07-09 中国移动通信集团辽宁有限公司 Name space structure rendering method, device, equipment and medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050036501A1 (en) * 2003-08-11 2005-02-17 Samsung Electronics Co., Ltd. Domain name service system and method thereof
CN101834911A (en) * 2010-03-31 2010-09-15 联想网御科技(北京)有限公司 Defense method of domain name hijacking and network outlet equipment
CN102859960A (en) * 2009-08-14 2013-01-02 阿卡麦科技公司 Method and apparatus for correlating nameserver IPv6 and IPv4 addresses

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050036501A1 (en) * 2003-08-11 2005-02-17 Samsung Electronics Co., Ltd. Domain name service system and method thereof
CN102859960A (en) * 2009-08-14 2013-01-02 阿卡麦科技公司 Method and apparatus for correlating nameserver IPv6 and IPv4 addresses
CN101834911A (en) * 2010-03-31 2010-09-15 联想网御科技(北京)有限公司 Defense method of domain name hijacking and network outlet equipment

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
丁森林等: "基于主动测量的DNS监测系统", 《2009年信息通信网络技术委员会年会征文》 *
中国通信标准化协会: "域名系统授权体系技术要求", 《中华人民共和国通信行业标准》 *

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104954505A (en) * 2015-06-12 2015-09-30 中国互联网络信息中心 Monitoring method and monitoring system for whole data updating process of DNS (Domain Name Server)
CN104954505B (en) * 2015-06-12 2021-03-12 中国互联网络信息中心 Monitoring method and system for DNS data updating overall process
CN105391818A (en) * 2015-11-26 2016-03-09 中国互联网络信息中心 Authoritative name emergency resolution system and method based on recursive server
CN105391818B (en) * 2015-11-26 2019-02-05 中国互联网络信息中心 A kind of authoritative domain name emergency analysis system and method based on recursion server
CN109995885A (en) * 2017-12-30 2019-07-09 中国移动通信集团辽宁有限公司 Name space structure rendering method, device, equipment and medium
CN109995885B (en) * 2017-12-30 2022-06-03 中国移动通信集团辽宁有限公司 Domain name space structure presentation method, device, equipment and medium

Similar Documents

Publication Publication Date Title
Lever et al. A lustrum of malware network communication: Evolution and insights
US9608886B2 (en) Methods, systems, and products for monitoring domain name servers
US9992156B2 (en) DNS security system and failure processing method
US8631489B2 (en) Method and system for detecting malicious domain names at an upper DNS hierarchy
CN101834911B (en) Defense method of domain name hijacking and network outlet equipment
CN107819895B (en) Top-level domain name configuration and security analysis method based on domain resource records
CN105630823B (en) Data cached monitoring method, device and system based on distributed system
CN111885086B (en) Malicious software heartbeat detection method, device and equipment and readable storage medium
US20100088405A1 (en) Determining Network Delay and CDN Deployment
CN109951482B (en) User terminal and block chain domain name resolution method thereof
CN109474575A (en) A kind of detection method and device in the tunnel DNS
CN109819068B (en) User terminal, block chain domain name resolution method thereof, computer equipment and computer readable storage medium
CN104883282A (en) Method and system for monitoring DNS server of terminal
CN103685599A (en) Domain name recursion service pre-judgment and intervention method
CN105025025A (en) Cloud-platform-based domain name active detecting method and system
CN110855636B (en) DNS hijacking detection method and device
CN104468860A (en) Method and device for recognizing risk of domain name resolution server
Zirngibl et al. Rusty clusters? dusting an IPv6 research foundation
CN106973125A (en) Domain name mapping implementation method and device
Ma et al. DNSRadar: Outsourcing malicious domain detection based on distributed cache-footprints
CN103763406A (en) DNS overall monitoring method and system
CN103685584A (en) Method and system of resisting domain name hijacking based on tunnelling
CN102055815A (en) System for acquiring local domain name analyses server of caller
CN105530251A (en) Method and device for identifying phishing website
CN113691491A (en) Method and device for detecting malicious domain name in domain name system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20140430