FINDING · EVALUATION

Adding artificial inter-arrival time delays — a standard DNS obfuscation technique in unconstrained networks — is infeasible for constrained IoT devices due to long inherent delays and high packet loss rates on constrained wireless links; the paper explicitly excludes timing-based obfuscation for this reason. EDNS(0) padding at recommended multiples of 128 bytes similarly inflates packet sizes to the point of forcing fragmentation, multiplying loss in constrained networks.

From 2026-lenders-secrets-best-notSecrets Best Not Shared: DNS Privacy Enhancements for the Constrained IoT · §1 / §3.1 · 2026 · arXiv preprint

Implications

Tags

censors
generic
techniques
traffic-shape
defenses
randomization

Extracted by claude-sonnet-4-6 — review before relying.