Ask Question, Ask an Expert

+61-413 786 465

info@mywordsolution.com

Ask Computer Engineering Expert

Domain Name System (DNS)

Task 1 -

Find available RRs of SUTD's domain name

Send the same request from university's and your ISP's network

  • Is this zone signed?
  • What query type do you think is more profitable for a DNS amplification attack?

Send the same request to an open DNS recursive NS (choose one of the public DNS service providers)

  • Do you observe any difference on the responses? If you do, can you explain why these differences occur?
  • What RR types do you observe on the responses to figure out whether the zone is signed or not?
  • Are they any difference between a direct query to their authoritative NS and a query through an open DNS recursive?

Task 2 -

Assess the amplification capabilities of the TLD Authoritative NSs.

Download the latest version of root.zone file and extract the pairs

Send directly to each Authoritative IPv4 address a DNS query about the domain_name and capture (sniffer) the responses. Choose the most profitable query type

Calculate the amplification factor with AF1

  • IP packet
  • UDP packet
  • DNS packet (UDP payload)

Present the measurements in an appropriate figure or table.

Task 3 -

Assess the reflection capabilities of the TLD Authoritative NSs.

For the same pairs of , send directly to each of the NS a bunch of 500 DNS queries in a narrow time window. Again, choose the most profitable query type

Evaluate only unique IPv4 addresses, namely probe the same server (IPv4 address) for only one of the domain names that is authoritative

For each authoritative NS calculate percentage of successful responses

Calculate the cumulative amplification factor with AF2

  • IP packet
  • UDP packet
  • DNS packet (OOP payload)

Present the measurements in an appropriate figure or table.

Task 4 -

Download the Top 1M (most visited) websites list from Statvoo (excel file)

From 1,000 websites

  • What is the percentage of the domains that have enabled DNSSEC?
  • What is the percentage of the authoritative that support recursive queries?

Assess the amplification and reflection capabilities of only the DNSSEC-enabled (repeat the same steps as T2 & T3 ONLY for these authoritatives)

Probably you will get better result if you query about the domain zone instead of the website's hostname (query about example.com instead of www.example.com)

Calculate the amplification factor with AF, & AF2 respectively

  • IP packet
  • UDP packet
  • DNS packet (UDP payload)

Deliverables -

Report: Explain the steps for each task (T)

Executed commands

Answers to the questions

Measurements (figure or table)

Screenshots of the tool's output

Shell script or source code (separate files)

The submitted file(s) should be contained in a compress file (.zip or .rar) and named after your details (for example: firstname_lastname.zip) On the first page of the report mention you full name and student ID. Keep the pcap files, you may be asked to deliver them as well.

Purpose of project -

  • To be familiarized with DNS service.
  • To assess the role of TLD Authoritative nameservers as amplifiers.
  • To assess the role of TLD Authoritative nameservers as reflectors.
  • To estimate a globalized view of DNS amplification attack potentials.

Description

You should submit a report that explains the steps you have followed for each task (T), executed commands, your answers to the questions, the measurements, screenshots of the utilized tools' output and shell script or source code (deliver in separate files). The submitted file(s) should be contained in a compress file (.zip or .rar) and named after your details (for example: firstname_lastname.zip). Also, on the first page of the report mention you full name and student ID.

Attachment:- Assignment Files.rar

Computer Engineering, Engineering

  • Category:- Computer Engineering
  • Reference No.:- M92562512

Have any Question?


Related Questions in Computer Engineering

Question summary of what is legal and regulatory

Question : Summary of what is legal and regulatory obligations regarding data and information security. Summary of project initiation in the technology world.

A software has x bugs a team finds 19 bugs in it another

A software has x bugs. A team finds 19 bugs in it. Another team finds 11 bugs in it. Of these, 3 bugs were common to both teams. What is the value of x, assuming that the all the bugs (found and remaining) have the same ...

Assume you have been selected to build a system for

Assume you have been selected to build a system for Oil&Gas company. Do you prefer to build a win-based system or a web-based system? Why?

Question research the options for creating a gui on a sun

Question : Research the options for creating a GUI on a Sun Solaris platform that can be duplicated on a Windows platform. Select a tool for creating a dual platform product and specify how much time would be needed for ...

Referring to the slides from text book chapter 5 there are

Referring to the slides from text book, Chapter 5, there are two versions of Fibonacci number calculators: BinaryFib(n) and LinearFibonacci(n). The first algorithm has exponential time complexity, while the second one is ...

Please respondexplain the properties and characteristics of

PLEASE RESPOND Explain the properties and characteristics of Transmission Control Protocol/Internet Protocol (TCP/IP).

Williamnbspis interested in knowingnbspwhether or not

William is interested in knowing  whether or not athletics from his team have lower satisfaction with their team on a survey than the known population average survey score of 19  and the known population survey standard ...

Design layout reference mailings review view consolas 105 a

Design Layout Reference Mailings Review View Consolas 10.5 A. A Styles styles H- 1. Report the total payments by date when the total payments are greater than $20,000. 2. List the amount paid by each customer who has pai ...

How does consumers influence the market price of goods it

How does consumers influence the market price of goods it sells, and what does the term, "market power" means?

One of the basic motivations behind the minimum spanning

One of the basic motivations behind the Minimum Spanning Tree Problem is the goal of designing a spanning network for a set of nodes with minimum total cost. Here we explore another type of objective: designing a spannin ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As