AUTHENTICATED NAME RESOLUTION
    1.
    发明公开

    公开(公告)号:US20240129290A1

    公开(公告)日:2024-04-18

    申请号:US18399093

    申请日:2023-12-28

    申请人: VeriSign, Inc.

    IPC分类号: H04L9/40 H04L61/4511

    摘要: A method, system, and computer-readable memory containing instructions include receiving a DNS request containing authentication information, validating the authentication information, determining an appropriate action to take based on the validating status, and taking the appropriate action. Actions may include responding with an individualized network layer address or service location address, delaying sending a response message, sending a network layer address or service location address corresponding to a site containing authentication information, and sending a response with a network layer address or service location address with a web address configured to mimic the website related to the requested resource.

    REGISTERING, MANAGING, AND COMMUNICATING WITH IOT DEVICES USING DOMAIN NAME SYSTEM PROCESSES

    公开(公告)号:US20220255910A1

    公开(公告)日:2022-08-11

    申请号:US17729883

    申请日:2022-04-26

    申请人: VeriSign, Inc.

    摘要: Provided herein is a method for registering an IoT device with a DNS registry. The method can include obtaining, at a DNS server, an identifier, IP address, and a public key of an asymmetric key pair associated with the IoT device from a network gateway device that is in communication with the IoT device, wherein the asymmetric key pair is provisioned onto the IoT device and an associated private key stored within a memory of the IoT device at a time that IoT device is manufactured or during a predetermined time window after manufacturing; creating at least one DNS record for the IoT device; assigning a domain name associated with the internet protocol (“IP”) address to the IoT device; storing the identifier, IP address, the domain name, and the public key in the at least one DNS record; and providing confirmation of the registration to the IoT device.

    AUTHENTICATED NAME RESOLUTION
    3.
    发明申请

    公开(公告)号:US20210021588A1

    公开(公告)日:2021-01-21

    申请号:US17062147

    申请日:2020-10-02

    申请人: VERISIGN, INC.

    IPC分类号: H04L29/06 H04L29/12

    摘要: A method, system, and computer-readable memory containing instructions include receiving a DNS request containing authentication information, validating the authentication information, determining an appropriate action to take based on the validating status, and taking the appropriate action. Actions may include responding with an individualized network layer address or service location address, delaying sending a response message, sending a network layer address or service location address corresponding to a site containing authentication information, and sending a response with a network layer address or service location address with a web address configured to mimic the website related to the requested resource.

    RESILIENT DOMAIN NAME SERVICE (DNS) RESOLUTION WHEN AN AUTHORITATIVE NAME SERVER IS UNAVAILABLE

    公开(公告)号:US20180375714A1

    公开(公告)日:2018-12-27

    申请号:US15670747

    申请日:2017-08-07

    申请人: VERISIGN, INC.

    IPC分类号: H04L12/24 H04W24/04 H04L29/12

    摘要: In one embodiment, a resolution resiliency application performs robust domain name system (DNS) resolution. In operation, the resolution resiliency application determines that an authoritative name server that is responsible for a domain name specified in a DNS query is unavailable. In response to determining that the authoritative name server is unavailable, the resolution resiliency application performs operation(s) that modify one or more DNS records stored in a cache based on one or more resiliency policies associated with the authoritative name server. The resolution resiliency application then generates a DNS response to the DNS query based on a DNS record stored in the modified cache. Notably, unlike conventional techniques that may generate inaccurate DNS responses based on stale DNS records, the disclosed techniques increase the likelihood of providing clients with DNS responses that accurately provide requested information.

    RESILIENT DOMAIN NAME SERVICE (DNS) RESOLUTION WHEN AN AUTHORITATIVE NAME SERVER IS DEGRADED

    公开(公告)号:US20180375716A1

    公开(公告)日:2018-12-27

    申请号:US15881596

    申请日:2018-01-26

    申请人: Verisign, Inc.

    IPC分类号: H04L12/24

    摘要: In one embodiment, a resolution resiliency application modifies domain name service (DNS) resolution. In operation, the resolution resiliency application determines that an authoritative name server has begun recovering from a degraded state or receives a flush list update from the authoritative name server. In response, the resolution resiliency application performs operation(s) that modify a query rate and/or a cache. The query rate specifies a frequency associated with DNS queries transmitted to the first authoritative name server. The cache stores DNS record(s) received from the first authoritative name server. Finally, the resolution resiliency application generates a DNS response to a DNS query based on the modified query rate and/or the modified cache.

    PROFILING DOMAIN NAME SYSTEM (DNS) TRAFFIC
    7.
    发明申请

    公开(公告)号:US20180139229A1

    公开(公告)日:2018-05-17

    申请号:US15349912

    申请日:2016-11-11

    申请人: VERISIGN, INC.

    IPC分类号: H04L29/06 H04L29/12

    摘要: In one embodiment, a profiling engine analyzes DNS transaction data that is logged by a recursive resolver to generate profiling results that are used to manage network activity. In operation, the profiling engine computes scores based on the DNS transaction data and scoring criteria. The profiling engine may compute any number of scores at any level of granularity. For example, the profiling engine may compute a score for each source IP address that is associated with the DNS transaction data. Subsequently, the profiling engine generates profiling results based on the scores and profiling criteria. Notably, DNS queries are typically the first step of longer transaction chains that result in the transfer of data to and from the network. Consequently, the profiling engine may provide more timely and comprehensive insight into network activities than conventional network management tools that analyze data at layers that are further down transaction chains.

    METHODS AND SYSTEMS FOR DOMAIN NAME DATA NETWORKING

    公开(公告)号:US20220377050A1

    公开(公告)日:2022-11-24

    申请号:US17882414

    申请日:2022-08-05

    申请人: VeriSign, Inc.

    IPC分类号: H04L61/58 H04L61/4511

    摘要: Systems, devices and methods for a Domain Name Data Networking (DNDN) content delivery system are disclosed. Embodiments perform operations including obtaining a content object having a unique identifier. The operations also include storing a local instance of the content object in association with DNS resource records and the unique identifier. The operations further include providing the local instance of the content to a client in response to receiving a request from the client including the unique identifier.

    RESILIENT DOMAIN NAME SERVICE (DNS) RESOLUTION WHEN AN AUTHORITATIVE NAME SERVER IS UNAVAILABLE

    公开(公告)号:US20180375713A1

    公开(公告)日:2018-12-27

    申请号:US15633655

    申请日:2017-06-26

    申请人: VERISIGN, INC.

    IPC分类号: H04L12/24 H04L29/12 H04W24/04

    摘要: In one embodiment, a resolution resiliency application performs robust domain name system (DNS) resolution. In operation, the resolution resiliency application determines that an authoritative name server that is responsible for a domain name specified in a DNS query is unavailable. In response to determining that the authoritative name server is unavailable, the resolution resiliency application performs operation(s) that modify one or more DNS records stored in a cache based on one or more resiliency policies associated with the authoritative name server. The resolution resiliency application then generates a DNS response to the DNS query based on a DNS record stored in the modified cache. Notably, unlike conventional techniques that may generate inaccurate DNS responses based on stale DNS records, the disclosed techniques increase the likelihood of providing clients with DNS responses that accurately provide requested information.