IP Library Granted Patent US 8,726,375
Granted Patent B2
US 8,726,375 · App. 13/150,962 · Granted May 13, 2014

Method and device for preventing domain name system spoofing

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,726,375
App. No.
13/150,962
Granted
May 13, 2014
Kind
B2
Abstract

A method for preventing Domain Name System (DNS) spoofing includes: performing uppercase/lowercase conversion for letters of a DNS question field in a DNS request packet according to a preset rule; sending the DNS request packet; receiving a DNS response packet; obtaining uppercase/lowercase distribution of the letters of the DNS question field in the DNS response packet; and forwarding the DNS response packet to a target DNS client if the uppercase/lowercase distribution of the letters of the DNS question field in the DNS response packet complies with the preset rule. Corresponding to the method, a device for preventing DNS spoofing is disclosed. The method and device reduce occupation of storage resources of the device.

Claims (27)

1. A method for preventing Domain Name System (DNS) spoofing comprising:

performing uppercase/lowercase conversion for a portion of first letters in a DNS inquiry field of a DNS request packet according to a preset rule;

sending the DNS request packet to a DNS server;

receiving a DNS response packet in response to the DNS request packet;

obtaining uppercase/lowercase distribution of second letters in a DNS inquiry field of the DNS response packet;

determining that the uppercase/lowercase distribution of the second letters in the DNS inquiry field of the DNS response packet complies with the preset rule; and

based upon the determining, forwarding the DNS response packet to a target DNS client;

wherein the performing the uppercase/lowercase conversion for the portion of the first letters in the DNS inquiry field of the DNS request packet according to the preset rule comprises:

performing Hash calculation by using one or more of: a source Internet Protocol (IP) address, a destination IP address, a source port, a destination port, a DNS identifier, a DNS question field data, and an answer field in the DNS response packet, and

performing the uppercase/lowercase conversion for the portion of the first letters in the DNS inquiry field of the DNS request packet according to a value obtained by the Hash calculation;

wherein the determining that the uppercase/lowercase distribution of the second letters in the DNS inquiry field of the DNS response packet complies with the preset rule comprises:

determining that the uppercase/lowercase distribution of the second letters in the DNS inquiry field of the DNS response packet complies with the value obtained by the Hash calculation.

2. A device for preventing Domain Name System (DNS) spoofing, comprising:

a memory;

one or more processors; and

one or more modules stored in the memory and configured for execution by the one or more processors, the one or more modules including instructions when executed by the one or more processors causing the one or more processors to:

perform uppercase/lowercase conversion for a portion of first letters in a DNS inquiry field of a DNS request packet according to a preset rule;

send the DNS request packet to a DNS server;

receive a DNS response packet in response to the DNS request packet;

obtain uppercase/lowercase distribution of second letters in a DNS inquiry field of the DNS response packet

determine that the uppercase/lowercase distribution of the second letters in the DNS inquiry field of the DNS response packet complies with the preset rule; and

based upon the determining forward the DNS response packet to a target DNS client,

wherein the one or more processors performing uppercase/lowercase conversion for the portion of the first letters in the DNS inquiry field of the DNS request packet according to the preset rule comprises:

performing Hash calculation by using one or more of: a source Internet Protocol (IP) address, a destination IP address, a source port, a destination port, a DNS identifier, a DNS question field data, and an answer field in the DNS response packet,

performing the uppercase/lowercase conversion for the portion of the first letters in the DNS inquiry field of the DNS request packet according to a value obtained by the Hash calculation;

wherein the one or more processors determining that the uppercase/lowercase distribution of the second letters in the DNS inquiry field of the DNS response packet complies with the preset rule comprises:

determining that the uppercase/lowercase distribution of the second letters in the DNS inquiry field of the DNS response packet complies with the value obtained by the Hash calculation.

Assignments (4)
CORRECTIVE ASSIGNMENT TO CORRECT THE CONVEYING PARTY'S NAME ON THE COVER SHEET PREVIOUSLY RECORDED AT REEL: 060907 FRAME: 0736. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Oct 14, 2022
From: HUAWEI DIGITAL TECHNOLOGIES(CHENG DU) CO., LIMITED.
To: CHENGDU HUAWEI TECHNOLOGIES CO., LTD.
Reel/Frame 061872/0024 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 26, 2022
From: HUAWEI DIGITAL TECHNOLOGIES (CHENG DU) CO.
To: CHENGDU HUAWEI TECHNOLOGIES CO., LTD.
Reel/Frame 060907/0736 →
CHANGE OF NAME Recorded Dec 8, 2014
From: CHENGDU HUAWEI SYMANTEC TECHNOLOGIES CO., LIMITED
To: HUAWEI DIGITAL TECHNOLOGIES (CHENG DU) CO. LIMITED.
Reel/Frame 034537/0210 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 20, 2011
From: MA, SHAOBU
To: CHENGDU HUAWEI SYMANTEC TECHNOLOGIES CO., LTD.
Reel/Frame 026481/0855 →