Abstract

Domain Name System (DNS) log has been considered as a great source of valuable information for the decision making on government policy or business strategy because querying DNS is the first step of all Internet activities. Due to the size of DNS log, Hadoop is considered as a prominent solution, but the geographical dispersal of DNS log hinders to adopt it in an ordinary way. Hadoop assumes all data source should be located on a single Hadoop File System (HDFS), but DNS log is stored on DNS servers dispersed all over the world. To resolve this issue, a new method named “Localized Analysis & Merge (LAM)” is proposed in this paper. The proposed method enables Hadoop to analyze DNS log on the dispersed DNS servers and it reduced the whole processing time dramatically. Also, the LAM method showed that DNS log can be used to extract a lot of valuable information such as a malware detection, the access frequency over countries, etc.

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.