Method and related device for probing encrypted dns recursive server
By scanning the set of Internet Protocol IP addresses and iteratively expanding certificate information, the problem of limited coverage and low efficiency of encrypted DNS recursive server detection in existing technologies is solved, achieving efficient and widespread server discovery and IPv6 compatibility.
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- CHINA INTERNET NETWORK INFORMATION CENTER
- Filing Date
- 2026-06-12
- Publication Date
- 2026-07-17
AI Technical Summary
Existing technologies have limited coverage and low detection efficiency when detecting encrypted DNS recursive servers that support encryption protocols across the entire network.
By scanning the set of Internet Protocol IP addresses, candidate encrypted DNS recursive servers are selected, a secure connection is established to obtain certificate information, the DNS recursive resolution service is verified, and the certificate domain name is used for iterative expansion to implement a two-level filtering mechanism to improve detection efficiency.
It expands the coverage of encrypted DNS recursive servers, improves detection efficiency, breaks through the scanning blind spots hidden by firewalls, is compatible with IPv6 networks, reduces resource waste, and improves hit rate.
Smart Images

Figure CN122419982A_ABST