Real-time anonymisation of DNS network traffic.

Autor: Ochab, Marcin, Mrukowicz, Marcin, Sarzyński, Jaromir, Molenda, Piotr
Předmět:
Zdroj: Procedia Computer Science; 2024, Vol. 246, p4018-4027, 10p
Abstrakt: The article covers the architecture developed to perform the anonymisation of active DNS traffic measurement. Data is anonymised on the fly using a proposed solution based on iptables. The proposed system was tested in the computer network of the University of Rzeszów. Furthermore, this solution could be applied to the bigger networks. The active DNS traffic based datasets are currently still rare and simultaneously they are valuable to researchers and IT admins. Collecting DNS data could be used in network monitoring tools, protecting the network from exfiltration and infiltration, detecting other malicious activities and finally performing machine learning and other research. Unfortunately, active DNS collected data contains information, which could affect the privacy of the computer network's user. The anonymisation of the data is therefore necessary. Since the amount of DNS queries could be enormous the anonymisation system needs to be flexible and scallable. In this contribution, a system, which meets these requirements is proposed. Finally it is worth to note, that its complexity is moderate and based on open-source software. [ABSTRACT FROM AUTHOR]
Databáze: Supplemental Index