DNS
security
DNS (Domain Name System) security is an important issue to ensure that internet users are protected against various cyber attacks that they may encounter while accessing websites.
When accessing websites, users' devices first request the DNS servers to obtain the IP address of the website they want. This IP address provides access to the site's server. However, during DNS queries, cyber attackers can gain access to users' devices using attack methods such as DNS cache poisoning, DNS Spoofing, and DNS hijacking.
Measures for DNS security may include using a trusted DNS provider, using DNSSEC (DNS Security Extensions), using encrypted DNS protocols such as DNS over HTTPS (DoH) or DNS over TLS (DoT), and using DNS filtering and firewalling.
By using a reliable DNS provider, cyber attackers can be prevented from tricking users through fake DNS servers. DNSSEC helps prevent attacks such as cache poisoning by maintaining the correctness of DNS queries. By using encrypted DNS protocols such as DNS over HTTPS (DoH) or DNS over TLS (DoT), DNS queries are encrypted and transmitted securely.
Using DNS filtering and firewall, it may be possible to block malicious DNS queries.