PDNS: A Fully Privacy-Preserving DNS
Published in 2023 ACM Special Interest Group on Data Communication (SIGCOMM), 2023
The Domain Name System (DNS) is a key component of Internet-based communication and its privacy has been neglected for years. Recently, DNS over HTTPS has improved the situation by fixing the issue of in-path middleboxes. Further progress has been made with proxy-based solutions such as Oblivious DoH, which separate a user’s identity from their DNS queries. However, these solutions rely on non-collusion between DNS resolvers and proxy networks. This paper instead proposes PDNS, a new DNS extension that uses Private Information Retrieval to allow DNS resolvers to operate on blind queries, thereby eliminating any privacy leaks.
Recommended citation: Yunming Xiao, Chenkai Weng, Ruijie Yu, Peizhi Liu, Matteo Varvello, and Aleksandar Kuzmanovic. 2023. Demo: PDNS: A Fully Privacy-Preserving DNS. In Proceedings of the ACM SIGCOMM 2023 Conference (ACM SIGCOMM 23). Association for Computing Machinery, New York, NY, USA, 1182–1184. https://doi.org/10.1145/3603269.3610860.
Download Paper