DNS over CoAP: Securing Name Resolution in the Internet of Things

HIP - Track 1 - Room 5
Martine Lenders
DNS over CoAP is a new Internet protocol that enables constrained IoT devices similar name resolution security as DNS over HTTPS. This talks presents the protocol and discusses its benefits over other DNS solutions.
I present the design, implementation, and analysis of DNS over CoAP (DoC), a new proposal for secure and privacy-friendly name resolution of constrained IoT devices. This protocol is currently discussed within the Internet Engineering Task Force (IETF), a standardization body for Internet protocols: https://datatracker.ietf.org/doc/draft-ietf-core-dns-over-coap/. We implemented different design choices of DoC in RIOT, an open-source operating system for the IoT, evaluate performance measures in a testbed, compare with DNS over UDP and DNS over DTLS, and validate our protocol design based on empirical DNS IoT data. Our findings indicate that plain DoC is on par with common DNS solutions for the constrained IoT but significantly outperforms when additional, CoAP standard features are used such as block-wise transfer or caching.

Additional information

Live Stream https://streaming.media.ccc.de/jev22/hip1
Type Talk/panel 30 min
Language English

More sessions

12/27/22
Theater Hall - E.T.I. (HiP main stage)
HIP - Track 1 - Room 5
Welcome to Hacking in Parallel. Lets fire this up.
12/27/22
Track 2 Room 2
davedarko
HIP - Track 2 - Room 2
Going through the reasoning and design decisions made while creating pentagon shaped PCBs and a case for a 12 sided platonic solid.
12/28/22
Camilo
HIP - Track 1 - Room 5
Introduction to open source PDKs for making custom Asics and the work involved in taping out a small systolic array using only open-source tooling, and also applications to systolic arrays
12/28/22
HIP - Track 1 - Room 5
Librevent is a browser extension allowing any user to copy and republish (“scrape”) data about events posted on proprietary platforms onto free libre and open source decentralized networks. For now, Librevents focuses on liberating events data (description, date and time, location) from Facebook onto Mobilizon, an event-management platform alternative part of the Fediverse*. The intention behind Librevents is to feed alternative ethical platforms like Mobilizon with content, in order to help ...
12/28/22
mainhall stage - c-base
c-base mainhall
Matthias Maurer beschreibt den Mond als unser *Sprungbrett zum Mars*. Und nicht nur für Missionen zum nächsten Planeten, sondern auch für wesentlich weiter entfernte Ziele, wo nie ein Mensch zuvor gewesen ist, wird es unabdingbar sein, den Mond als Trainingsgelände zu nutzen. Mit Hilfe unserer **CubeR** soll die Oberfläche des Mondes sowohl für die Wissenschaft als auch für die Industrie zugänglich werden. Unsere nach einem offenen Standard entwickelten Nano-Rover stellen eine Grundlage ...
12/28/22
Theater Hall - E.T.I. (HiP main stage)
Dennis Guse
HIP - Track 1 - Room 5
Most open-source projects have limit lifetime: at some point in time development stops and the project becomes unmaintained. A lot of projects often do not even reach the stage, where they are used by a critical mass of users. In this talk, I will go through the steps of continuing an open-source project using my lessons learned from forking Google's MyTracks and crafting it into OpenTracks.
12/28/22
Theater Hall - E.T.I. (HiP main stage)
hanemile
HIP - Track 1 - Room 5
Most bug bounty platforms list subdomain takeover as "not in scope", but could it be interesting anyways? Yes! This talk will show you what this kind of problem is and how it can be mitigated at scale (and where it isn't).