George Wood - Scottsdale AZ, US Victor Oppleman - Virginia Beach VA, US Brett Watson - Scottsdale AZ, US Rodney Joffe - Tempe AZ, US Zachary Kanner - Virginia Beach VA, US James Willett - Phoenix AZ, US Mark Broyles - Phoenix AZ, US Jesse Dunagan - Gilbert AZ, US
International Classification:
H04L 12/56
US Classification:
370392000, 370401000
Abstract:
A system receives suspect traffic information pertaining to possible network threats. A router detects and redirects suspect traffic from within a subnetwork to an interrogation module. The interrogation module receives the redirected suspect traffic and identifies the source device from within the subnetwork. The interrogation module can also identify the type of suspect traffic, the original destination of the suspect traffic and the protocol type of the packet. Suspect traffic information can be updated and the router can be reconfigured to accommodate the updated information.
Rodney Lance Joffe - Tempe AZ, US Victor Joseph Oppleman - Virginia Beach VA, US David Link King - Cave Creek AZ, US Brett Dean Watson - Scottsdale AZ, US Andrew Jackson - Sterling VA, US Sean Leach - Castle Pines CO, US
Assignee:
NeuStar, Inc. - Sterling VA
International Classification:
H04L 9/32 G06F 21/00
US Classification:
726 5
Abstract:
A method and system for authenticating answers to Domain Name System (DNS) queries originating from recursive DNS servers are provided. A verification component provides a verification that a DNS query originated from the recursive DNS server. An authoritative DNS server receives the query via a network, such as the Internet, and provides an answer to the query to an authentication component. The authentication component then provides an authentication, such as a digital signature, which confirms that the received answer was provided by the authoritative DNS server, and then communicates the answer and the authentication to the verification component via the network. The verification component then verifies that the authentication corresponds to the received answer and sends the answer to the recursive DNS server. When the verification component receives an answer in the absence of a corresponding authentication, the verification component drops the answer.
- Sterling VA, US Victor Joseph OPPLEMAN - Virginia Beach VA, US David Link KING - Cave Creek AZ, US Brett Dean WATSON - Scottsdale AZ, US Andrew JACKSON - Sterling VA, US Sean LEACH - Castle Pines CO, US
Assignee:
Neustar, Inc. - Sterling VA
International Classification:
H04L 29/06 H04L 29/12 H04L 9/32
Abstract:
A method and system for authenticating answers to Domain Name System (DNS) queries originating from recursive DNS servers are provided. A verification component provides a verification that a DNS query originated from the recursive DNS server. An authoritative DNS server receives the query via a network, such as the Internet, and provides an answer to the query to an authentication component. The authentication component then provides an authentication, such as a digital signature, which confirms that the received answer was provided by the authoritative DNS server, and then communicates the answer and the authentication to the verification component via the network. The verification component then verifies that the authentication corresponds to the received answer and sends the answer to the recursive DNS server. When the verification component receives an answer in the absence of a corresponding authentication, the verification component drops the answer.
- Sterling VA, US Victor Joseph Oppleman - Virginia Beach VA, US David Link King - Cave Creek AZ, US Brett Dean Watson - Scottsdale AZ, US Andrew Jackson - Sterling VA, US Sean Leach - Castle Pines CO, US
International Classification:
H04L 29/06 H04L 9/32 H04L 29/12
Abstract:
A method and system for authenticating answers to Domain Name System (DNS) queries originating from recursive DNS servers provided. A verification component provides a versification that a DNS query originated from the recursive DNS server. An authoritative DNS server receives the query via a network, such as the Internet, provides an answer to the query to an authentication component. The authentication component then provides an authentication such as a digital signature, which confirms that the received answer was provided by the authoritative DNS server, and then communicates the answer and the authentication to the verification component via the network. The verification component then verifies that the authentication corresponds to the receive answer and sends the answer to the recursive DNS server. When the verification component receives an answer in the absence of a corresponding authentication the verification component drops the answer.
- Sterling VA, US Victor Joseph Oppleman - Virginia Beach VA, US David Link King - Cave Creek AZ, US Brett Dean Watson - Scottsdale AZ, US Andrew Jackson - Sterling VA, US Sean Leach - Castle Pines CO, US
International Classification:
H04L 29/06 H04L 29/12 H04L 9/32
Abstract:
A method and system for authenticating answers to Domain Name System (DNS) queries originating from recursive DNS servers are provided. A verification component provides a verification that a DNS query originated from the recursive DNS server. An authoritative DNS server receives the query via a network, such as the Internet, and provides an answer to the query to an authentication component. The authentication component then provides an authentication, such as a digital signature, which confirms that the received answer was provided by the authoritative DNS server, and then communicates the answer and the authentication to the verification component via the network. The verification component then verifies that the authentication corresponds to the received answer and sends the answer to the recursive DNS server. When the verification component receives an answer in the absence of a corresponding authentication, the verification component drops the answer.
- Sterling VA, US VICTOR JOSEPH OPPLEMAN - Virginia Beach VA, US DAVID LINK KING - Cave Creek AZ, US BRETT DEAN WATSON - Scottsdale AZ, US ANDREW JACKSON - Sterling VA, US SEAN LEACH - Castle Pines CO, US
International Classification:
H04L 29/06 H04L 29/12
Abstract:
A method and system for authenticating answers to Domain Name System (DNS) queries originating from recursive DNS servers are provided. A verification component provides a verification that a DNS query originated from the recursive DNS server. An authoritative DNS server receives the query via a network, such as the Internet, and provides an answer to the query to an authentication component. The authentication component then provides an authentication, such as a digital signature, which confirms that the received answer was provided by the authoritative DNS server, and then communicates the answer and the authentication to the verification component via the network. The verification component then verifies that the authentication corresponds to the received answer and sends the answer to the recursive DNS server. When the verification component receives an answer in the absence of a corresponding authentication, the verification component drops the answer.