DNS Client Software Agent for DDoS Attack Defense
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems are ineffective in maintaining functionality of DNS servers under distributed denial-of-service (DDoS) attacks, which disrupt service by flooding resources or obstructing communication, particularly affecting financial institutions and other high-profile web servers.
Innovation Solution
A method and system that employs a software agent to replace the DNS server address with an alternative address, either from an alternative DNS server or a static IP address, ensuring continuous service by redirecting client software to a different address when a DDoS attack is detected, using either integral or separate software interacting with the client software.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a DNS server uses traditional DNS resolution methods, then normal service operation is efficient and simple, but the system becomes vulnerable to DDoS attacks that can disrupt service availability
Solution Approach 1:
The patent introduces a software agent as an intermediary component between the client software and the DNS server. This agent detects DDoS attacks and mediates the connection by redirecting traffic to alternative DNS servers or IP addresses, thereby protecting the main DNS server from attack while maintaining service availability for users
Solution Approach 2:
The system performs preliminary actions by pre-configuring alternative DNS servers and IP addresses before an attack occurs. When a DDoS attack is detected, the software agent immediately switches to these pre-prepared alternatives, minimizing service disruption time and maintaining continuous availability
2Reliability
If the DNS server redirects users to alternative addresses during attack, then service continuity is maintained, but system complexity increases due to software agent integration
Solution Approach 1:
The software agent is designed to operate autonomously without requiring manual intervention. It automatically detects DDoS attacks, identifies alternative addresses, and redirects users without user involvement. This self-service capability maintains service continuity while limiting the complexity increase to only the automated agent component rather than requiring complex manual management systems
Data Source
AI summary
Managing denial-of-service attacks by intercepting a query by a client software executed by a computer to resolve at a DNS server a network address associated with a target computer system, determining if the DNS server is under denial-of-service attack, and providing to the client software, in response to the query, an alternate network address associated with the target computer system if the DNS server is under denial-of-service attack.
