IP Library Granted Patent US 11,902,243
Granted Patent B2
US 11,902,243 · App. 17/937,937 · Granted Feb 13, 2024

Resolving domain name system (DNS) requests via proxy mechanisms

Inventors: Rodney Lance Joffe (Tempe, AZ); David Link King (Cave Creek, AZ)
Assignee: Security Services, LLC
H04L61/4511H04L61/4552H04L61/59H04L67/56H04L2101/618
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,902,243
App. No.
17/937,937
Granted
Feb 13, 2024
Kind
B2
Abstract

Systems and methods are described herein for providing proxy mechanisms for DNS services, such as resolving DNS requests. In some embodiments, the systems and methods establish a Proxy DNS module at a DNS resolver of an internet service provider, and access, with the proxy DNS module, DNS queries destined for a public name server. The name server may be accessible by the DNS resolver via a publically-accessible network. Further, the systems and methods may route the accessed DNS queries to a private name server associated with the proxy DNS module and accessible via a private communications channel, and receive, from the private name server and via the private communications channel, IP addresses associated with the DNS queries.

Claims (39)

1. A method performed by a proxy DNS module associated with a DNS resolver of an internet service provider, the method comprising:

accessing, with the proxy DNS module, DNS queries destined for a public name server, wherein the public name server is accessible by the DNS resolver via a publicly-accessible network;

routing the accessed DNS queries to a private name server associated with the proxy DNS module and accessible via a private communications channel;

receiving a master file of the private name server with IP addresses associated with the DNS queries; and

receiving, updates to the master file from the private name server with new or changed information to the IP addresses via the private communications channel.

2. The method of claim 1 , wherein the IP addresses include at least one of:

an IP address of a top-level domain (TLD) name server for a top-level domain of a domain name included in one of the DNS queries, and

an IP address of an authoritative name server for the domain name.

3. The method of claim 1 , wherein the IP addresses include an IP address associated with a domain name included in one of the DNS queries.

4. The method of claim 1 , wherein the proxy DNS module is included in the DNS resolver.

5. The method of claim 1 , wherein the accessing of the DNS queries includes intercepting the DNS queries.

6. The method of claim 1 , wherein the DNS queries are accessed prior to their transmission by the DNS resolver.

7. The method of claim 1 , wherein the private communications channel is formed over network components that are parts of a private network.

8. A proxy DNS module associated with a DNS resolver of an internet service provider, the proxy DNS module comprising:

one or more processors configured to:

access, with the proxy DNS module, DNS queries destined for a public name server, wherein the public name server is accessible by the DNS resolver via a publicly-accessible network;

route the accessed DNS queries to a private name server associated with the proxy DNS module and accessible via a private communications channel;

receive a master file of the private name server with IP addresses associated with the DNS queries; and

receive, updates to the master file from the private name server with new or changed information to the IP addresses via the private communications channel.

9. The proxy DNS module of claim 8 , wherein the IP addresses include at least one of:

an IP address of a top-level domain (TLD) name server for a top-level domain of a domain name included in one of the DNS queries, and

an IP address of an authoritative name server for the domain name.

10. The proxy DNS module of claim 8 , wherein the IP addresses include an IP address associated with a domain name included in one of the DNS queries.

11. The proxy DNS module of claim 8 , wherein the proxy DNS module is included in the DNS resolver.

12. The proxy DNS module of claim 8 , wherein the accessing of the DNS queries includes intercepting the DNS queries.

13. The proxy DNS module of claim 8 , wherein the DNS queries are accessed prior to their transmission by the DNS resolver.

14. The proxy DNS module of claim 8 , wherein the private communications channel is formed over network components that are parts of a private network.

15. A non-transitory computer-readable medium whose contents, when executed by a DNS proxy module associated with a DNS resolver, cause the DNS proxy module to perform a method for providing domain name system (DNS) services, the method comprising:

accessing, with the proxy DNS module, DNS queries destined for a public name server, wherein the public name server is accessible by the DNS resolver via a publicly-accessible network;

routing the accessed DNS queries to a private name server associated with the proxy DNS module and accessible via a private communications channel;

receiving a master file of the private name server with IP addresses associated with the DNS queries; and

receiving, updates to the master file from the private name server with new or changed information to the IP addresses via the private communications channel.

16. The method of claim 15 , wherein the IP addresses include at least one of:

an IP address of a top-level domain (TLD) name server for a top-level domain of a domain name included in one of the DNS queries, and

an IP address of an authoritative name server for the domain name.

17. The method of claim 15 , wherein the IP addresses include an IP address associated with a domain name included in one of the DNS queries.

18. The method of claim 15 , wherein the proxy DNS module is included in the DNS resolver.

19. The method of claim 15 , wherein the accessing of the DNS queries includes intercepting the DNS queries.

20. The method of claim 15 , wherein the DNS queries are accessed prior to their transmission by the DNS resolver.

Assignments (9)
FIRST LIEN INTELLECTUAL PROPERTY AGREEMENT SUPPLEMENT Recorded Sep 24, 2025
From: DIGICERT, INC.
To: HPS INVESTMENT PARTNERS, LLC, AS COLLATERAL AGENT
Reel/Frame 072947/0203 →
ASSIGNMENT OF SECURITY INTERESTS IN INTELLECTUAL PROPERTY (FIRST LIEN), RECORDED ON JANUARY 23, 2025 AT REEL 069991 FRAME 0390 Recorded Sep 24, 2025
From: UBS AG, STAMFORD BRANCH, AS RESIGNING AGENT
To: HPS INVESTMENT PARTNERS, LLC, AS SUCCESSOR AGENT
Reel/Frame 072928/0289 →
SECOND LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT SUPPLEMENT Recorded Jul 30, 2025
From: DIGICERT, INC.
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 072295/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 21, 2025
From: VERCARA, LLC
To: DIGICERT, INC.
Reel/Frame 071781/0348 →
SECOND LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Jan 23, 2025
From: VERCARA, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 069991/0330 →
FIRST LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Jan 23, 2025
From: VERCARA, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 069991/0390 →
CHANGE OF NAME Recorded Mar 21, 2024
From: SECURITY SERVICES, LLC
To: VERCARA, LLC
Reel/Frame 066867/0462 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 24, 2023
From: NEUSTAR, INC.
To: SECURITY SERVICES, LLC
Reel/Frame 064692/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 24, 2023
From: JOFFE, RODNEY LANCE; KING, DAVID LINK
To: NEUSTAR, INC.
Reel/Frame 064691/0750 →
Continuity (3)
Continuation 15805075 · Nov 6, 2017
Provisional Application 62417807 · Nov 4, 2016
Related Publication 20230102361A1 · Mar 30, 2023