Browse Definitions:
Definition

Internet reboot keys

Internet reboot keys are encrypted DNSSEC keys that can restore the Internet root zone in the event of an attack or natural catastrophe.

The Internet root zone is the top level of the domain name system (DNS) hierarchy. It lists the names and IP addresses for the 13 DNS servers that authorize all top-level domains, such as .gov, .org and .com.

If links between the servers break, appointed key holders will meet to restart the system and restore connections. The key holders, who are appointed by ICANN and called Trusted Community Representatives, have each been given a smart card sealed in a tamper-evident plastic bag. Each card contains part of an encrypted DNSSEC root zone key. The encrypted data from at least five out of the seven cards is required to restart the system.

The key program is a joint effort between ICANN, VeriSign and the United States Department of Commerce to deploy Domain Name System Security Extensions (DNSSEC) to Internet root servers. DNSSEC adds digital signatures to DNS data to authenticate the data's origin and verify its integrity as it travels across the Internet. It is designed to protect the Internet from certain attacks such as DNS cache poisoning and man-in-the-middle spoofs.

The deployment of DNSSEC at the root zone is an important step towards building a new infrastructure of trust for the Internet. According to DNSSEC proponent Vint Cerf, who is best known for being the father of the Internet:

"An infrastructure has been created for a for a hierarchical security system which can be purposed and repurposed in a number of different ways…so I would predict that although we started out putting this together to assure that the domain name lookups return valid Internet addresses, in the long run this hierarchical structure of trust will be applied to a number of other functions that require strong authentication".

Learn more about DNSSEC root zone keys:

ICANN announces DNSSEC deployment to root Internet servers
Announced at this week's Black Hat Briefings, root servers and Internet domains have now been signed with DNSSEC.

Fed DNSSEC project going slowly
The process of implementing DNSSEC into government domain names has been a slow one, but is nevertheless gaining traction.

Federal agencies scrambling on DNSSEC implementation
Federal deployments of DNSSEC are lagging markedly. Learn more about what the governement is doing to catch up.

Office of Science and Technology Policy
The Whitehouse, issued a press release about the DNSSEC Signed Root Zone.

This was last updated in February 2012

Start the conversation

Send me notifications when other members comment.

By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

SearchCompliance

  • PCAOB (Public Company Accounting Oversight Board)

    The Public Company Accounting Oversight Board (PCAOB) is a Congressionally-established nonprofit that assesses audits of public ...

  • cyborg anthropologist

    A cyborg anthropologist is an individual who studies the interaction between humans and technology, observing how technology can ...

  • RegTech

    RegTech, or regulatory technology, is a term used to describe technology that is used to help streamline the process of ...

SearchSecurity

  • application whitelisting

    Application whitelisting is the practice of identifying applications that have been deemed safe for execution and restricting all...

  • security

    Security, in information technology (IT), is the defense of digital information and IT assets against internal and external, ...

  • insider threat

    An insider threat is a malicious hacker (also called a cracker or a black hat) who is an employee or officer of a business, ...

SearchHealthIT

  • athenahealth Inc.

    Based in Watertown, Mass., athenahealth Inc. is a leading vendor of cloud-based EHRs for small to medium-sized physician ...

  • Affordable Care Act (ACA or Obamacare)

    The Affordable Care Act (ACA) is legislation passed in 2010 that changed how uninsured Americans enroll in and receive healthcare...

  • HIPAA Privacy Rule

    The Standards for Privacy of Individually Identifiable Health Information, commonly known as the HIPAA Privacy Rule, establishes ...

SearchDisasterRecovery

  • data recovery

    Data recovery restores data that has been lost, accidentally deleted, corrupted or made inaccessible. Learn how data recovery ...

  • disaster recovery plan (DRP)

    A company's disaster recovery policy is enhanced with a documented DR plan that formulates strategies, and outlines preparation ...

  • fault-tolerant

    Systems with integrated fault tolerance are designed to withstand multiple hardware failures to ensure continuous availability.

SearchStorage

  • object storage

    Object storage, also called object-based storage, is an approach to addressing and manipulating units of storage called objects, ...

  • data deduplication

    Deduplication retains one unique data instance to reduce storage and bandwidth consumed by remote backups, replication and ...

  • byte

    In most computer systems, a byte is a unit of data that is eight binary digits long. Bytes are often used to represent a ...

SearchSolidStateStorage

  • flash file system

    Flash file systems are designed specifically for memory devices. A well-designed flash device and flash file system ensure ...

  • IOPS (input/output operations per second)

    IOPS measures the maximum number of reads and writes to non-contiguous storage. It is not an actual benchmark since vendor ...

  • eMMC (embedded MultiMediaCard)

    An embedded MultiMediaCard (eMMC) is a small storage device made up of NAND flash memory and a simple storage controller.

SearchCloudStorage

  • RESTful API

    A RESTful application program interface breaks down a transaction to create a series of small modules, each of which addresses an...

  • cloud storage infrastructure

    Cloud storage infrastructure is the hardware and software framework that supports the computing requirements of a private or ...

  • Zadara VPSA and ZIOS

    Zadara Storage provides block, file or object storage with varying levels of compute and capacity through its ZIOS and VPSA ...

Close