Support DNS security in multi-principal environment

A multi-agent and environment technology, applied to secure communication devices and key distribution, can solve problems in implementing the DNSSEC protocol, etc.
CN102546176BActive Publication Date: 2015-11-18MICROSOFT TECH LICENSING LLC

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
MICROSOFT TECH LICENSING LLC
Publication Date
2015-11-18

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

Multiple peer domain name system (DNS) servers are included in a multi-master DNS environment. One of the multiple peer DNS servers is a key master peer DNS server that generates one or more keys for a DNS zone serviced by the multiple peer DNS servers. The key master peer DNS server can also generate a signing key descriptor that identifies the set of one or more keys for the DNS zone, and communicate the signing key descriptor to the other ones of the multiple peer DNS servers.
Need to check novelty before this filing date? Find Prior Art

Description

Background technique

[0001] A typical Domain Name System (DNS) server resolves names to Internet Protocol (IP) addresses. The DNS Security Extension (DNSSEC) protocol has been developed to add security extensions to the DNS system. However, a typical DNS system is set up with a primary DNS server and one or more secondary DNS servers. Implementing the DNSSEC protocol in an environment with more than one primary DNS server can be problematic. Contents of the invention

[0002] This Summary is provided in a simplified form to introduce a selection of concepts that are further described below in the Detailed Description. This Summary is not intended to identify key features or essential features of the claimed subject matter, nor is it intended to be used to limit the scope of the claimed subject matter.

[0003] According to one or more aspects, a signing key descriptor identifying how to sign a domain name system (DNS) zone is generated. Additionally, at the first peer DN...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More