Summary: | 碩士 === 樹德科技大學 === 資訊管理研究所 === 95 === It has been more than twenty years since DNS service developed and DNS provides the transformation of domain names and IP addresses. If DNS server doesn’t work regularly, a lot of internet behaviors would be influenced. For instance, it can not gain to normal response if user want to link the web sites. And then, let the users forget or ignore the existence of DNS service. Pharming attack would alter lawful website to malicious sites through poison cache that would falsify host file and the users would be led to malicious sites unconsciously. If you make a transaction on the internet, that might result in the loss of money or personal information. In March 2005, SANS security organization issued a warning about attackers use cache poison to several ISP-level DNS servers so that request for “.com” sites were directed to fabricate DNS servers, and had more than 900 Internet addresses and more than 75000 email messages were redirected. Therefore, protect of pharming attacks is more important network security purpose. This research based on DNSSEC mechanism develops a System of Anti-Pharming Attacks using DNSSEC mechanism, in order to ensure that it can assistant the administrators keep the zone data accurately which the area is under the DNS server’s control. Also it can automatic verify if the resources record of DNS Query from users fit in with integrity and authentication. The act of information security event caused by Pharming attack will be lowered as well as increase the security of internet applications.
|