FINDING · EVALUATION

DNS over CoAP with equalized packet lengths (64-byte block-wise transfer) and SCHC header compression reduces Random Forest classification accuracy for identifying DNS frames from a ~89% baseline to 86%; adding payload compression (application/dns+cbor) further reduces accuracy to 77%. This outperforms DNS over HTTPS in constrained IoT settings across 296 evaluated deployment scenarios.

From 2026-lenders-secrets-best-notSecrets Best Not Shared: DNS Privacy Enhancements for the Constrained IoT · Abstract / §5–6 · 2026 · arXiv preprint

Implications

Tags

censors
generic
techniques
ml-classifiertraffic-shape
defenses
randomization

Extracted by claude-sonnet-4-6 — review before relying.