首页 > 最新文献

Proceedings of the 4th ACM Conference on Information-Centric Networking最新文献

英文 中文
Low-power internet of things with NDN & cooperative caching 具有NDN和协作缓存的低功耗物联网
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3125732
O. Hahm, E. Baccelli, T. Schmidt, Matthias Wählisch, C. Adjih, L. Massoulié
Energy efficiency is a major driving factor in the Internet of Things (IoT). In this context, an IoT approach based on Information-Centric Networking (ICN) offers prospects for low energy consumption. Indeed, ICN can provide local in-network content caching so that relevant IoT content remains available at any time while devices are in deep-sleep mode most of the time. In this paper, we evaluate NDN enhanced with CoCa, a simple side protocol we designed to exploit content names together with smart interplay between cooperative caching and power-save sleep capabilities on IoT devices. We perform extensive, large scale experiments on real hardware with IoT networks comprising of up to 240 nodes, and on an emulator with up to 1000 nodes. We show in practice that, with NDN+CoCa, devices can reduce energy consumption by an order of magnitude while maintaining recent IoT content availability above 90 %. We furthermore provide auto-configuration mechanisms enabling practical ICN deployments on IoT networks of arbitrary size with NDN+CoCa. With such mechanisms, each device can autonomously configure names and auto-tune parameters to reduce energy consumption as demonstrated in this paper.
能源效率是物联网(IoT)的主要驱动因素。在这种情况下,基于信息中心网络(ICN)的物联网方法为低能耗提供了前景。事实上,ICN可以提供本地网络内内容缓存,以便在设备大部分时间处于深度睡眠模式时,相关物联网内容随时可用。在本文中,我们评估了用CoCa增强的NDN, CoCa是我们设计的一个简单的侧协议,用于利用内容名称以及物联网设备上协作缓存和省电休眠功能之间的智能相互作用。我们在包含多达240个节点的物联网网络的真实硬件上进行了广泛的大规模实验,并在具有多达1000个节点的模拟器上进行了实验。我们在实践中表明,使用NDN+CoCa,设备可以将能耗降低一个数量级,同时将最新物联网内容的可用性保持在90%以上。此外,我们还提供自动配置机制,通过NDN+CoCa在任意规模的物联网网络上实现实际ICN部署。通过这种机制,每个设备可以自主配置名称和自动调整参数,以减少能耗,如本文所示。
{"title":"Low-power internet of things with NDN & cooperative caching","authors":"O. Hahm, E. Baccelli, T. Schmidt, Matthias Wählisch, C. Adjih, L. Massoulié","doi":"10.1145/3125719.3125732","DOIUrl":"https://doi.org/10.1145/3125719.3125732","url":null,"abstract":"Energy efficiency is a major driving factor in the Internet of Things (IoT). In this context, an IoT approach based on Information-Centric Networking (ICN) offers prospects for low energy consumption. Indeed, ICN can provide local in-network content caching so that relevant IoT content remains available at any time while devices are in deep-sleep mode most of the time. In this paper, we evaluate NDN enhanced with CoCa, a simple side protocol we designed to exploit content names together with smart interplay between cooperative caching and power-save sleep capabilities on IoT devices. We perform extensive, large scale experiments on real hardware with IoT networks comprising of up to 240 nodes, and on an emulator with up to 1000 nodes. We show in practice that, with NDN+CoCa, devices can reduce energy consumption by an order of magnitude while maintaining recent IoT content availability above 90 %. We furthermore provide auto-configuration mechanisms enabling practical ICN deployments on IoT networks of arbitrary size with NDN+CoCa. With such mechanisms, each device can autonomously configure names and auto-tune parameters to reduce energy consumption as demonstrated in this paper.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"42 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"124818967","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 46
Toward an ideal NDN router on a commercial off-the-shelf computer 在商用现成的计算机上实现理想的NDN路由器
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3125731
Junji Takemasa, Y. Koizumi, T. Hasegawa
The goal of the paper is to present what an ideal NDN forwarding engine on a commercial off-the-shelf (COTS) computer is supposed to be. The paper designs a reference forwarding engine by selecting well-established high-speed techniques and then analyzes state-of-the-art prototype implementation to know its performance bottleneck. The microarchitectural analysis at the level of CPU pipelines and instructions reveals that dynamic random access memory (DRAM) access latency is one of bottlenecks for high-speed forwarding engines. Finally, the paper designs two prefetch-friendly packet processing techniques to hide DRAM access latency. The prototype according to the techniques achieves more than 40 million packets per second packet forwarding on a COTS computer.
本文的目标是展示商用现货(COTS)计算机上理想的NDN转发引擎应该是什么。本文通过选择成熟的高速技术设计了一个参考转发引擎,并对目前的原型实现进行了分析,了解了其性能瓶颈。在CPU管道和指令层面的微体系结构分析表明,动态随机存取存储器(DRAM)的访问延迟是高速转发引擎的瓶颈之一。最后,设计了两种适合预取的数据包处理技术来隐藏DRAM访问延迟。基于该技术的原型机在COTS计算机上实现了每秒超过4000万个数据包的转发。
{"title":"Toward an ideal NDN router on a commercial off-the-shelf computer","authors":"Junji Takemasa, Y. Koizumi, T. Hasegawa","doi":"10.1145/3125719.3125731","DOIUrl":"https://doi.org/10.1145/3125719.3125731","url":null,"abstract":"The goal of the paper is to present what an ideal NDN forwarding engine on a commercial off-the-shelf (COTS) computer is supposed to be. The paper designs a reference forwarding engine by selecting well-established high-speed techniques and then analyzes state-of-the-art prototype implementation to know its performance bottleneck. The microarchitectural analysis at the level of CPU pipelines and instructions reveals that dynamic random access memory (DRAM) access latency is one of bottlenecks for high-speed forwarding engines. Finally, the paper designs two prefetch-friendly packet processing techniques to hide DRAM access latency. The prototype according to the techniques achieves more than 40 million packets per second packet forwarding on a COTS computer.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"127948665","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 16
Information-centric networking for the industrial IoT 面向工业物联网的信息中心网络
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132099
Cenk Gündoğan, Peter Kietzmann, T. Schmidt, Martine S. Lenders, Hauke Petersen, Matthias Wählisch, M. Frey, Felix Shzu-Juraschek
The wireless Internet of Things interconnects numerous constrained devices such as sensors and actuators not only with each other, but also with cloud services. We demonstrate a low power and lossy Information-Centric Network interworking with a cloud in an industrial application. Our approach includes a lightweight publish-subscribe system for NDN and an ICN-to-MQTT gateway which translates between NDN names and MQTT topics. This demo is based on RIOT and CCN-lite.
无线物联网不仅可以将传感器和执行器等众多受限设备相互连接,还可以与云服务连接。我们演示了一个低功耗、有损的以信息为中心的网络在工业应用程序中与云交互。我们的方法包括一个轻量级的NDN发布-订阅系统和一个在NDN名称和MQTT主题之间进行转换的ICN-to-MQTT网关。这个演示是基于RIOT和CCN-lite的。
{"title":"Information-centric networking for the industrial IoT","authors":"Cenk Gündoğan, Peter Kietzmann, T. Schmidt, Martine S. Lenders, Hauke Petersen, Matthias Wählisch, M. Frey, Felix Shzu-Juraschek","doi":"10.1145/3125719.3132099","DOIUrl":"https://doi.org/10.1145/3125719.3132099","url":null,"abstract":"The wireless Internet of Things interconnects numerous constrained devices such as sensors and actuators not only with each other, but also with cloud services. We demonstrate a low power and lossy Information-Centric Network interworking with a cloud in an industrial application. Our approach includes a lightweight publish-subscribe system for NDN and an ICN-to-MQTT gateway which translates between NDN names and MQTT topics. This demo is based on RIOT and CCN-lite.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"12 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"129326542","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 20
VectorSync: distributed dataset synchronization over named data networking VectorSync:通过命名数据网络进行分布式数据集同步
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132106
Wentao Shang, A. Afanasyev, Lixia Zhang
Distributed dataset synchronization (sync for short) provides an important abstraction for multi-party data-centric communication in the Named Data Networking (NDN) architecture. Since the beginning of the NDN project, several sync protocols have been developed, each made its own design choices that cause inefficiency under various conditions. Furthermore, none of them provides group membership management, making it difficult to remove departed nodes from the protocol state maintained at each node. This poster presents VectorSync, a new NDN sync protocol that is built upon the lessons learned so far, provides group membership management, and improves the efficiency of dataset synchronization.
分布式数据集同步(简称同步)为命名数据网络(NDN)架构中的多方以数据为中心的通信提供了一个重要的抽象。自NDN项目开始以来,已经开发了几种同步协议,每种协议都有自己的设计选择,在各种条件下导致效率低下。此外,它们都不提供组成员管理,因此很难从每个节点维护的协议状态中删除离开的节点。这张海报展示了VectorSync,一个新的NDN同步协议,建立在迄今为止学到的经验教训之上,提供组成员管理,并提高数据集同步的效率。
{"title":"VectorSync: distributed dataset synchronization over named data networking","authors":"Wentao Shang, A. Afanasyev, Lixia Zhang","doi":"10.1145/3125719.3132106","DOIUrl":"https://doi.org/10.1145/3125719.3132106","url":null,"abstract":"Distributed dataset synchronization (sync for short) provides an important abstraction for multi-party data-centric communication in the Named Data Networking (NDN) architecture. Since the beginning of the NDN project, several sync protocols have been developed, each made its own design choices that cause inefficiency under various conditions. Furthermore, none of them provides group membership management, making it difficult to remove departed nodes from the protocol state maintained at each node. This poster presents VectorSync, a new NDN sync protocol that is built upon the lessons learned so far, provides group membership management, and improves the efficiency of dataset synchronization.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"21 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"117036860","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 29
ICN enabling CoAP extensions for IP based IoT devices ICN支持基于IP的物联网设备的CoAP扩展
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132105
N. Fotiou, G. Xylomenos, George C. Polyzos, Hasan M. A. Islam, D. Lagutin, T. Hakala, Eero Hakala
The Constrained Application Protocol (CoAP) and its extensions, such as observe and group communication, offer the potential for developing novel IoT applications. However, a full-fledged CoAP-based application requires delay-tolerant communication and support for multicast: since these properties cannot be easily provided by existing IP networks, developers cannot take full advantage of CoAP, preferring to use HTTP instead. In this demo we show how proxying CoAP traffic over an ICN network can unleash the full potential of CoAP, simultaneously shifting overhead and complexity from the (constrained) endpoints to the network.
约束应用协议(CoAP)及其扩展,如观察和组通信,为开发新的物联网应用提供了潜力。然而,一个成熟的基于CoAP的应用程序需要容忍延迟的通信和对多播的支持:由于现有的IP网络不能轻易地提供这些属性,开发人员不能充分利用CoAP,而更愿意使用HTTP。在这个演示中,我们将展示通过ICN网络代理CoAP流量如何释放CoAP的全部潜力,同时将开销和复杂性从(受限的)端点转移到网络。
{"title":"ICN enabling CoAP extensions for IP based IoT devices","authors":"N. Fotiou, G. Xylomenos, George C. Polyzos, Hasan M. A. Islam, D. Lagutin, T. Hakala, Eero Hakala","doi":"10.1145/3125719.3132105","DOIUrl":"https://doi.org/10.1145/3125719.3132105","url":null,"abstract":"The Constrained Application Protocol (CoAP) and its extensions, such as observe and group communication, offer the potential for developing novel IoT applications. However, a full-fledged CoAP-based application requires delay-tolerant communication and support for multicast: since these properties cannot be easily provided by existing IP networks, developers cannot take full advantage of CoAP, preferring to use HTTP instead. In this demo we show how proxying CoAP traffic over an ICN network can unleash the full potential of CoAP, simultaneously shifting overhead and complexity from the (constrained) endpoints to the network.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"96 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"114489605","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 7
Device-to-device communication with named data networking 使用命名数据网络的设备对设备通信
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132101
Wentao Shang, A. Afanasyev, Yanbiao Li, J. Burke, Lixia Zhang
Named Data Networking (NDN) architecture uses data-centric communication primitives that naturally support direct device-to-device (D2D) communications. To make NDN-enabled D2D communication a reality, this poster aims at two goals. First, we report our recent progress in enabling NDN connectivity over a number of popular D2D networking technologies. Second, we share with the broader community the roadblocks that we discovered in the process. Our experience suggests that launching a new network protocol stack for D2D communication on common platforms can be a daunting engineering challenge because of the lack of standard cross-platform APIs, limited documentation, and general platform restrictions to use L2 interfaces directly. Moreover, platforms are often equipped with different D2D networking technologies, forcing one to use many different means to interconnect different types of systems.
命名数据网络(NDN)架构使用以数据为中心的通信原语,自然支持直接的设备到设备(D2D)通信。为了使ndn支持的D2D通信成为现实,这张海报旨在实现两个目标。首先,我们报告了在一些流行的D2D网络技术上实现NDN连接的最新进展。其次,我们与更广泛的社区分享我们在这个过程中发现的障碍。我们的经验表明,由于缺乏标准的跨平台api、有限的文档以及直接使用L2接口的一般平台限制,在公共平台上启动用于D2D通信的新网络协议栈可能是一项艰巨的工程挑战。此外,平台通常配备了不同的D2D网络技术,迫使人们使用许多不同的方法来互连不同类型的系统。
{"title":"Device-to-device communication with named data networking","authors":"Wentao Shang, A. Afanasyev, Yanbiao Li, J. Burke, Lixia Zhang","doi":"10.1145/3125719.3132101","DOIUrl":"https://doi.org/10.1145/3125719.3132101","url":null,"abstract":"Named Data Networking (NDN) architecture uses data-centric communication primitives that naturally support direct device-to-device (D2D) communications. To make NDN-enabled D2D communication a reality, this poster aims at two goals. First, we report our recent progress in enabling NDN connectivity over a number of popular D2D networking technologies. Second, we share with the broader community the roadblocks that we discovered in the process. Our experience suggests that launching a new network protocol stack for D2D communication on common platforms can be a daunting engineering challenge because of the lack of standard cross-platform APIs, limited documentation, and general platform restrictions to use L2 interfaces directly. Moreover, platforms are often equipped with different D2D networking technologies, forcing one to use many different means to interconnect different types of systems.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"130513726","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 1
Demo: VR video conferencing over named data networks 演示:命名数据网络上的VR视频会议
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132092
Liyang Zhang, S. O. Amin, C. Westphal
This demo shows an implementation of 360/virtual reality video conferencing system implemented over NDN, including producing content, formatting into NDN format, transmitting over NDN network, managing the flow of interest/content requests, and displaying in a web browser so as to show 360 degree rotation and zoom in/out features.
本演示演示了在NDN上实现的360/虚拟现实视频会议系统的实现,包括生成内容、格式化成NDN格式、通过NDN网络传输、管理兴趣/内容请求流、在web浏览器中显示以显示360度旋转和放大/缩小功能。
{"title":"Demo: VR video conferencing over named data networks","authors":"Liyang Zhang, S. O. Amin, C. Westphal","doi":"10.1145/3125719.3132092","DOIUrl":"https://doi.org/10.1145/3125719.3132092","url":null,"abstract":"This demo shows an implementation of 360/virtual reality video conferencing system implemented over NDN, including producing content, formatting into NDN format, transmitting over NDN network, managing the flow of interest/content requests, and displaying in a web browser so as to show 360 degree rotation and zoom in/out features.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"133807274","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 2
A network measurement framework for named data networks 用于命名数据网络的网络测量框架
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132113
Davide Pesavento, Omar Ilias El Mimouni, Eric Newberry, L. Benmohamed, A. Battou
In this poster, we propose a network measurement framework for NDN. We define the goals of network measurement and discuss how these goals can be achieved by identifying the necessary measurement operations that must be built on top of NDN's primitives. Our main design goal is to empower NDN with a built-in measurement framework that can support multiple use cases and can be used by different applications that need to produce and/or consume network measurements. The framework uses NDN's native Interest/Data exchange to request and collect both active and passive measurements. Being a work-in-progress, we also discuss open issues and future work.
在这张海报中,我们提出了一个NDN的网络测量框架。我们定义了网络测量的目标,并讨论了如何通过确定必须建立在NDN原语之上的必要测量操作来实现这些目标。我们的主要设计目标是为NDN提供一个内置的测量框架,该框架可以支持多个用例,并且可以被需要生成和/或使用网络测量的不同应用程序使用。该框架使用NDN的原生兴趣/数据交换来请求和收集主动和被动测量。作为一项正在进行的工作,我们也讨论开放的问题和未来的工作。
{"title":"A network measurement framework for named data networks","authors":"Davide Pesavento, Omar Ilias El Mimouni, Eric Newberry, L. Benmohamed, A. Battou","doi":"10.1145/3125719.3132113","DOIUrl":"https://doi.org/10.1145/3125719.3132113","url":null,"abstract":"In this poster, we propose a network measurement framework for NDN. We define the goals of network measurement and discuss how these goals can be achieved by identifying the necessary measurement operations that must be built on top of NDN's primitives. Our main design goal is to empower NDN with a built-in measurement framework that can support multiple use cases and can be used by different applications that need to produce and/or consume network measurements. The framework uses NDN's native Interest/Data exchange to request and collect both active and passive measurements. Being a work-in-progress, we also discuss open issues and future work.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"5 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"115997585","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 7
NDN DeLorean: an authentication system for data archives in named data networking NDN DeLorean:命名数据网络中数据档案的认证系统
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3125724
Yingdi Yu, A. Afanasyev, J. Seedorf, Zhiyi Zhang, Lixia Zhang
Named Data Networking (NDN) enables data-centric security in network communication by mandating digital signatures on network-layer data packets. Since the lifetime of some data can extend to many years, they outlive the lifetime of their signatures. This paper introduces NDN DeLorean, an authentication framework to ensure the long-term authenticity of long-lived data. The design of DeLorean takes a publicly auditable bookkeeping service approach to keep permanent proofs of data signatures and the times when the signatures were generated. To assess DeLorean's feasibility the paper presents a set of analytical evaluations on the operational cost as a function of data archive volumes. The paper also identifies several remaining issues that must be addressed in order to make DeLorean a general solution to authenticating long-lived data.
NDN (Named Data Networking)通过对网络层数据包进行数字签名,实现以数据为中心的网络通信安全。由于某些数据的生命周期可以延长到许多年,因此它们的寿命超过了其签名的生命周期。介绍了一种保证长寿命数据长期真实性的认证框架NDN DeLorean。DeLorean的设计采用了一种公开可审计的簿记服务方法,以保持数据签名和签名生成时间的永久证明。为了评估DeLorean的可行性,本文提出了一套关于运营成本作为数据存档量函数的分析评估。为了使DeLorean成为验证长期数据的通用解决方案,本文还指出了必须解决的几个遗留问题。
{"title":"NDN DeLorean: an authentication system for data archives in named data networking","authors":"Yingdi Yu, A. Afanasyev, J. Seedorf, Zhiyi Zhang, Lixia Zhang","doi":"10.1145/3125719.3125724","DOIUrl":"https://doi.org/10.1145/3125719.3125724","url":null,"abstract":"Named Data Networking (NDN) enables data-centric security in network communication by mandating digital signatures on network-layer data packets. Since the lifetime of some data can extend to many years, they outlive the lifetime of their signatures. This paper introduces NDN DeLorean, an authentication framework to ensure the long-term authenticity of long-lived data. The design of DeLorean takes a publicly auditable bookkeeping service approach to keep permanent proofs of data signatures and the times when the signatures were generated. To assess DeLorean's feasibility the paper presents a set of analytical evaluations on the operational cost as a function of data archive volumes. The paper also identifies several remaining issues that must be addressed in order to make DeLorean a general solution to authenticating long-lived data.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"70 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"127333749","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 22
NDNCERT: universal usable trust management for NDN NDNCERT: NDN通用可用信任管理
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132090
Zhiyi Zhang, A. Afanasyev, Lixia Zhang
The Named Data Networking (NDN) architecture builds the security primitives into the network layer: all retrieved data packets must be signed to ensure their integrity authenticity and provenance. To ensure that these primitives are used in a meaningful way without imposing undue burdens on NDN users, the management of cryptographic keys and certificates needs to work in a simple, secure, and user-friendly way. This poster introduces the NDN Trust Management system (NDNCERT) which is designed to fill this need. NDNCERT provides flexible mechanisms to delegate trust between certificates, either within a single device (managing permissions for local applications on a node to operate under a given namespace) or across devices/entities. NDNCERT features a modular design for security challenges that establish trust through out-of-band means for certificate issuing. Once a node or an application obtains a valid certificate for its namespace (or being configured with a self-signed certificate), it automatically becomes a certificate authority for its namespace, and can use the same NDNCERT protocol to produce certificates for the sub-namespaces.
命名数据网络(NDN)体系结构将安全原语构建到网络层中:所有检索到的数据包必须经过签名,以确保其完整性、真实性和来源。为了确保以有意义的方式使用这些原语,而不会给NDN用户带来不必要的负担,加密密钥和证书的管理需要以一种简单、安全和用户友好的方式进行。这张海报介绍了NDN信任管理系统(NDNCERT),该系统旨在满足这一需求。NDNCERT提供了灵活的机制来在证书之间委托信任,无论是在单个设备内(管理节点上本地应用程序在给定命名空间下操作的权限)还是跨设备/实体。NDNCERT采用模块化设计来应对安全挑战,通过带外方式颁发证书来建立信任。一旦节点或应用程序获得了其名称空间的有效证书(或配置了自签名证书),它就自动成为其名称空间的证书颁发机构,并且可以使用相同的NDNCERT协议为子名称空间生成证书。
{"title":"NDNCERT: universal usable trust management for NDN","authors":"Zhiyi Zhang, A. Afanasyev, Lixia Zhang","doi":"10.1145/3125719.3132090","DOIUrl":"https://doi.org/10.1145/3125719.3132090","url":null,"abstract":"The Named Data Networking (NDN) architecture builds the security primitives into the network layer: all retrieved data packets must be signed to ensure their integrity authenticity and provenance. To ensure that these primitives are used in a meaningful way without imposing undue burdens on NDN users, the management of cryptographic keys and certificates needs to work in a simple, secure, and user-friendly way. This poster introduces the NDN Trust Management system (NDNCERT) which is designed to fill this need. NDNCERT provides flexible mechanisms to delegate trust between certificates, either within a single device (managing permissions for local applications on a node to operate under a given namespace) or across devices/entities. NDNCERT features a modular design for security challenges that establish trust through out-of-band means for certificate issuing. Once a node or an application obtains a valid certificate for its namespace (or being configured with a self-signed certificate), it automatically becomes a certificate authority for its namespace, and can use the same NDNCERT protocol to produce certificates for the sub-namespaces.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"5 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"129679035","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 18
期刊
Proceedings of the 4th ACM Conference on Information-Centric Networking
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1