Yingdi Yu, A. Afanasyev, J. Seedorf, Zhiyi Zhang, Lixia Zhang
{"title":"NDN DeLorean: an authentication system for data archives in named data networking","authors":"Yingdi Yu, A. Afanasyev, J. Seedorf, Zhiyi Zhang, Lixia Zhang","doi":"10.1145/3125719.3125724","DOIUrl":null,"url":null,"abstract":"Named Data Networking (NDN) enables data-centric security in network communication by mandating digital signatures on network-layer data packets. Since the lifetime of some data can extend to many years, they outlive the lifetime of their signatures. This paper introduces NDN DeLorean, an authentication framework to ensure the long-term authenticity of long-lived data. The design of DeLorean takes a publicly auditable bookkeeping service approach to keep permanent proofs of data signatures and the times when the signatures were generated. To assess DeLorean's feasibility the paper presents a set of analytical evaluations on the operational cost as a function of data archive volumes. The paper also identifies several remaining issues that must be addressed in order to make DeLorean a general solution to authenticating long-lived data.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"70 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"22","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 4th ACM Conference on Information-Centric Networking","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3125719.3125724","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 22
Abstract
Named Data Networking (NDN) enables data-centric security in network communication by mandating digital signatures on network-layer data packets. Since the lifetime of some data can extend to many years, they outlive the lifetime of their signatures. This paper introduces NDN DeLorean, an authentication framework to ensure the long-term authenticity of long-lived data. The design of DeLorean takes a publicly auditable bookkeeping service approach to keep permanent proofs of data signatures and the times when the signatures were generated. To assess DeLorean's feasibility the paper presents a set of analytical evaluations on the operational cost as a function of data archive volumes. The paper also identifies several remaining issues that must be addressed in order to make DeLorean a general solution to authenticating long-lived data.
NDN (Named Data Networking)通过对网络层数据包进行数字签名,实现以数据为中心的网络通信安全。由于某些数据的生命周期可以延长到许多年,因此它们的寿命超过了其签名的生命周期。介绍了一种保证长寿命数据长期真实性的认证框架NDN DeLorean。DeLorean的设计采用了一种公开可审计的簿记服务方法,以保持数据签名和签名生成时间的永久证明。为了评估DeLorean的可行性,本文提出了一套关于运营成本作为数据存档量函数的分析评估。为了使DeLorean成为验证长期数据的通用解决方案,本文还指出了必须解决的几个遗留问题。