首页 > 最新文献

Proceedings of the 4th ACM Conference on Information-Centric Networking最新文献

英文 中文
Demo: panoramic streaming using named tiles 演示:全景流使用命名磁贴
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132093
Kazuaki Ueda, Yuma Ishigaki, A. Tagami, T. Hasegawa
This demonstration shows an efficient panoramic streaming application with ICN functionalities. The camera device splits its field-of-view into multiple named tiles, and clients request minimum tiles for their field-of-view. These named tiles are cached at the intermediate routers and the camera device can reduce the amount of traffic on its access network. By utilizing the ICN's merits, this application can work with limited resources, like IoT environment.
本演示展示了一个具有ICN功能的高效全景流应用程序。相机设备将其视场划分为多个命名的块,并且客户要求其视场的最小块。这些已命名的块缓存在中间路由器上,相机设备可以减少其接入网络上的流量。通过利用ICN的优点,该应用程序可以在有限的资源(如物联网环境)下工作。
{"title":"Demo: panoramic streaming using named tiles","authors":"Kazuaki Ueda, Yuma Ishigaki, A. Tagami, T. Hasegawa","doi":"10.1145/3125719.3132093","DOIUrl":"https://doi.org/10.1145/3125719.3132093","url":null,"abstract":"This demonstration shows an efficient panoramic streaming application with ICN functionalities. The camera device splits its field-of-view into multiple named tiles, and clients request minimum tiles for their field-of-view. These named tiles are cached at the intermediate routers and the camera device can reduce the amount of traffic on its access network. By utilizing the ICN's merits, this application can work with limited resources, like IoT environment.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"124389625","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 3
Toward an ideal NDN router on a commercial off-the-shelf computer 在商用现成的计算机上实现理想的NDN路由器
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3125731
Junji Takemasa, Y. Koizumi, T. Hasegawa
The goal of the paper is to present what an ideal NDN forwarding engine on a commercial off-the-shelf (COTS) computer is supposed to be. The paper designs a reference forwarding engine by selecting well-established high-speed techniques and then analyzes state-of-the-art prototype implementation to know its performance bottleneck. The microarchitectural analysis at the level of CPU pipelines and instructions reveals that dynamic random access memory (DRAM) access latency is one of bottlenecks for high-speed forwarding engines. Finally, the paper designs two prefetch-friendly packet processing techniques to hide DRAM access latency. The prototype according to the techniques achieves more than 40 million packets per second packet forwarding on a COTS computer.
本文的目标是展示商用现货(COTS)计算机上理想的NDN转发引擎应该是什么。本文通过选择成熟的高速技术设计了一个参考转发引擎,并对目前的原型实现进行了分析,了解了其性能瓶颈。在CPU管道和指令层面的微体系结构分析表明,动态随机存取存储器(DRAM)的访问延迟是高速转发引擎的瓶颈之一。最后,设计了两种适合预取的数据包处理技术来隐藏DRAM访问延迟。基于该技术的原型机在COTS计算机上实现了每秒超过4000万个数据包的转发。
{"title":"Toward an ideal NDN router on a commercial off-the-shelf computer","authors":"Junji Takemasa, Y. Koizumi, T. Hasegawa","doi":"10.1145/3125719.3125731","DOIUrl":"https://doi.org/10.1145/3125719.3125731","url":null,"abstract":"The goal of the paper is to present what an ideal NDN forwarding engine on a commercial off-the-shelf (COTS) computer is supposed to be. The paper designs a reference forwarding engine by selecting well-established high-speed techniques and then analyzes state-of-the-art prototype implementation to know its performance bottleneck. The microarchitectural analysis at the level of CPU pipelines and instructions reveals that dynamic random access memory (DRAM) access latency is one of bottlenecks for high-speed forwarding engines. Finally, the paper designs two prefetch-friendly packet processing techniques to hide DRAM access latency. The prototype according to the techniques achieves more than 40 million packets per second packet forwarding on a COTS computer.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"127948665","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 16
Adaptive forwarding of persistent interests in named data networking 命名数据网络中持久兴趣的自适应转发
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132091
Philipp Moll, Julian Janda, H. Hellwagner
Persistent Interests (PIs) are a promising approach to introduce push-type traffic in Named Data Networking (NDN), in particular for conversational services such as voice and video calls. Forwarding decisions for PIs are crucial in NDN because they establish a long-lived path for the data flowing back toward the PI issuer. In the course of studying the use of PIs in NDN, we investigate adaptive PI forwarding and present a strategy combining regular NDN forwarding information and results from probing potential alternative paths through the network. Simulation results indicate that our adaptive PI forwarding approach is superior to the PI-adapted Best Route strategy when network conditions change due to link failures.
持久兴趣(pi)是在命名数据网络(NDN)中引入推送型流量的一种很有前途的方法,特别是对于语音和视频呼叫等会话服务。PI的转发决策在NDN中是至关重要的,因为它们为流向PI发行者的数据建立了一条长期的路径。在研究PI在NDN中的使用过程中,我们研究了自适应PI转发,并提出了一种结合常规NDN转发信息和通过网络探测潜在替代路径的结果的策略。仿真结果表明,当网络条件因链路故障而发生变化时,自适应PI转发方法优于自适应PI最佳路由策略。
{"title":"Adaptive forwarding of persistent interests in named data networking","authors":"Philipp Moll, Julian Janda, H. Hellwagner","doi":"10.1145/3125719.3132091","DOIUrl":"https://doi.org/10.1145/3125719.3132091","url":null,"abstract":"Persistent Interests (PIs) are a promising approach to introduce push-type traffic in Named Data Networking (NDN), in particular for conversational services such as voice and video calls. Forwarding decisions for PIs are crucial in NDN because they establish a long-lived path for the data flowing back toward the PI issuer. In the course of studying the use of PIs in NDN, we investigate adaptive PI forwarding and present a strategy combining regular NDN forwarding information and results from probing potential alternative paths through the network. Simulation results indicate that our adaptive PI forwarding approach is superior to the PI-adapted Best Route strategy when network conditions change due to link failures.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"182 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"116898268","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 14
VectorSync: distributed dataset synchronization over named data networking VectorSync:通过命名数据网络进行分布式数据集同步
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132106
Wentao Shang, A. Afanasyev, Lixia Zhang
Distributed dataset synchronization (sync for short) provides an important abstraction for multi-party data-centric communication in the Named Data Networking (NDN) architecture. Since the beginning of the NDN project, several sync protocols have been developed, each made its own design choices that cause inefficiency under various conditions. Furthermore, none of them provides group membership management, making it difficult to remove departed nodes from the protocol state maintained at each node. This poster presents VectorSync, a new NDN sync protocol that is built upon the lessons learned so far, provides group membership management, and improves the efficiency of dataset synchronization.
分布式数据集同步(简称同步)为命名数据网络(NDN)架构中的多方以数据为中心的通信提供了一个重要的抽象。自NDN项目开始以来,已经开发了几种同步协议,每种协议都有自己的设计选择,在各种条件下导致效率低下。此外,它们都不提供组成员管理,因此很难从每个节点维护的协议状态中删除离开的节点。这张海报展示了VectorSync,一个新的NDN同步协议,建立在迄今为止学到的经验教训之上,提供组成员管理,并提高数据集同步的效率。
{"title":"VectorSync: distributed dataset synchronization over named data networking","authors":"Wentao Shang, A. Afanasyev, Lixia Zhang","doi":"10.1145/3125719.3132106","DOIUrl":"https://doi.org/10.1145/3125719.3132106","url":null,"abstract":"Distributed dataset synchronization (sync for short) provides an important abstraction for multi-party data-centric communication in the Named Data Networking (NDN) architecture. Since the beginning of the NDN project, several sync protocols have been developed, each made its own design choices that cause inefficiency under various conditions. Furthermore, none of them provides group membership management, making it difficult to remove departed nodes from the protocol state maintained at each node. This poster presents VectorSync, a new NDN sync protocol that is built upon the lessons learned so far, provides group membership management, and improves the efficiency of dataset synchronization.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"21 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"117036860","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 29
ICN enabling CoAP extensions for IP based IoT devices ICN支持基于IP的物联网设备的CoAP扩展
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132105
N. Fotiou, G. Xylomenos, George C. Polyzos, Hasan M. A. Islam, D. Lagutin, T. Hakala, Eero Hakala
The Constrained Application Protocol (CoAP) and its extensions, such as observe and group communication, offer the potential for developing novel IoT applications. However, a full-fledged CoAP-based application requires delay-tolerant communication and support for multicast: since these properties cannot be easily provided by existing IP networks, developers cannot take full advantage of CoAP, preferring to use HTTP instead. In this demo we show how proxying CoAP traffic over an ICN network can unleash the full potential of CoAP, simultaneously shifting overhead and complexity from the (constrained) endpoints to the network.
约束应用协议(CoAP)及其扩展,如观察和组通信,为开发新的物联网应用提供了潜力。然而,一个成熟的基于CoAP的应用程序需要容忍延迟的通信和对多播的支持:由于现有的IP网络不能轻易地提供这些属性,开发人员不能充分利用CoAP,而更愿意使用HTTP。在这个演示中,我们将展示通过ICN网络代理CoAP流量如何释放CoAP的全部潜力,同时将开销和复杂性从(受限的)端点转移到网络。
{"title":"ICN enabling CoAP extensions for IP based IoT devices","authors":"N. Fotiou, G. Xylomenos, George C. Polyzos, Hasan M. A. Islam, D. Lagutin, T. Hakala, Eero Hakala","doi":"10.1145/3125719.3132105","DOIUrl":"https://doi.org/10.1145/3125719.3132105","url":null,"abstract":"The Constrained Application Protocol (CoAP) and its extensions, such as observe and group communication, offer the potential for developing novel IoT applications. However, a full-fledged CoAP-based application requires delay-tolerant communication and support for multicast: since these properties cannot be easily provided by existing IP networks, developers cannot take full advantage of CoAP, preferring to use HTTP instead. In this demo we show how proxying CoAP traffic over an ICN network can unleash the full potential of CoAP, simultaneously shifting overhead and complexity from the (constrained) endpoints to the network.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"96 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"114489605","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 7
Device-to-device communication with named data networking 使用命名数据网络的设备对设备通信
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132101
Wentao Shang, A. Afanasyev, Yanbiao Li, J. Burke, Lixia Zhang
Named Data Networking (NDN) architecture uses data-centric communication primitives that naturally support direct device-to-device (D2D) communications. To make NDN-enabled D2D communication a reality, this poster aims at two goals. First, we report our recent progress in enabling NDN connectivity over a number of popular D2D networking technologies. Second, we share with the broader community the roadblocks that we discovered in the process. Our experience suggests that launching a new network protocol stack for D2D communication on common platforms can be a daunting engineering challenge because of the lack of standard cross-platform APIs, limited documentation, and general platform restrictions to use L2 interfaces directly. Moreover, platforms are often equipped with different D2D networking technologies, forcing one to use many different means to interconnect different types of systems.
命名数据网络(NDN)架构使用以数据为中心的通信原语,自然支持直接的设备到设备(D2D)通信。为了使ndn支持的D2D通信成为现实,这张海报旨在实现两个目标。首先,我们报告了在一些流行的D2D网络技术上实现NDN连接的最新进展。其次,我们与更广泛的社区分享我们在这个过程中发现的障碍。我们的经验表明,由于缺乏标准的跨平台api、有限的文档以及直接使用L2接口的一般平台限制,在公共平台上启动用于D2D通信的新网络协议栈可能是一项艰巨的工程挑战。此外,平台通常配备了不同的D2D网络技术,迫使人们使用许多不同的方法来互连不同类型的系统。
{"title":"Device-to-device communication with named data networking","authors":"Wentao Shang, A. Afanasyev, Yanbiao Li, J. Burke, Lixia Zhang","doi":"10.1145/3125719.3132101","DOIUrl":"https://doi.org/10.1145/3125719.3132101","url":null,"abstract":"Named Data Networking (NDN) architecture uses data-centric communication primitives that naturally support direct device-to-device (D2D) communications. To make NDN-enabled D2D communication a reality, this poster aims at two goals. First, we report our recent progress in enabling NDN connectivity over a number of popular D2D networking technologies. Second, we share with the broader community the roadblocks that we discovered in the process. Our experience suggests that launching a new network protocol stack for D2D communication on common platforms can be a daunting engineering challenge because of the lack of standard cross-platform APIs, limited documentation, and general platform restrictions to use L2 interfaces directly. Moreover, platforms are often equipped with different D2D networking technologies, forcing one to use many different means to interconnect different types of systems.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"130513726","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 1
Demo: VR video conferencing over named data networks 演示:命名数据网络上的VR视频会议
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132092
Liyang Zhang, S. O. Amin, C. Westphal
This demo shows an implementation of 360/virtual reality video conferencing system implemented over NDN, including producing content, formatting into NDN format, transmitting over NDN network, managing the flow of interest/content requests, and displaying in a web browser so as to show 360 degree rotation and zoom in/out features.
本演示演示了在NDN上实现的360/虚拟现实视频会议系统的实现,包括生成内容、格式化成NDN格式、通过NDN网络传输、管理兴趣/内容请求流、在web浏览器中显示以显示360度旋转和放大/缩小功能。
{"title":"Demo: VR video conferencing over named data networks","authors":"Liyang Zhang, S. O. Amin, C. Westphal","doi":"10.1145/3125719.3132092","DOIUrl":"https://doi.org/10.1145/3125719.3132092","url":null,"abstract":"This demo shows an implementation of 360/virtual reality video conferencing system implemented over NDN, including producing content, formatting into NDN format, transmitting over NDN network, managing the flow of interest/content requests, and displaying in a web browser so as to show 360 degree rotation and zoom in/out features.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"133807274","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 2
A network measurement framework for named data networks 用于命名数据网络的网络测量框架
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132113
Davide Pesavento, Omar Ilias El Mimouni, Eric Newberry, L. Benmohamed, A. Battou
In this poster, we propose a network measurement framework for NDN. We define the goals of network measurement and discuss how these goals can be achieved by identifying the necessary measurement operations that must be built on top of NDN's primitives. Our main design goal is to empower NDN with a built-in measurement framework that can support multiple use cases and can be used by different applications that need to produce and/or consume network measurements. The framework uses NDN's native Interest/Data exchange to request and collect both active and passive measurements. Being a work-in-progress, we also discuss open issues and future work.
在这张海报中,我们提出了一个NDN的网络测量框架。我们定义了网络测量的目标,并讨论了如何通过确定必须建立在NDN原语之上的必要测量操作来实现这些目标。我们的主要设计目标是为NDN提供一个内置的测量框架,该框架可以支持多个用例,并且可以被需要生成和/或使用网络测量的不同应用程序使用。该框架使用NDN的原生兴趣/数据交换来请求和收集主动和被动测量。作为一项正在进行的工作,我们也讨论开放的问题和未来的工作。
{"title":"A network measurement framework for named data networks","authors":"Davide Pesavento, Omar Ilias El Mimouni, Eric Newberry, L. Benmohamed, A. Battou","doi":"10.1145/3125719.3132113","DOIUrl":"https://doi.org/10.1145/3125719.3132113","url":null,"abstract":"In this poster, we propose a network measurement framework for NDN. We define the goals of network measurement and discuss how these goals can be achieved by identifying the necessary measurement operations that must be built on top of NDN's primitives. Our main design goal is to empower NDN with a built-in measurement framework that can support multiple use cases and can be used by different applications that need to produce and/or consume network measurements. The framework uses NDN's native Interest/Data exchange to request and collect both active and passive measurements. Being a work-in-progress, we also discuss open issues and future work.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"5 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"115997585","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 7
NDN DeLorean: an authentication system for data archives in named data networking NDN DeLorean:命名数据网络中数据档案的认证系统
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3125724
Yingdi Yu, A. Afanasyev, J. Seedorf, Zhiyi Zhang, Lixia Zhang
Named Data Networking (NDN) enables data-centric security in network communication by mandating digital signatures on network-layer data packets. Since the lifetime of some data can extend to many years, they outlive the lifetime of their signatures. This paper introduces NDN DeLorean, an authentication framework to ensure the long-term authenticity of long-lived data. The design of DeLorean takes a publicly auditable bookkeeping service approach to keep permanent proofs of data signatures and the times when the signatures were generated. To assess DeLorean's feasibility the paper presents a set of analytical evaluations on the operational cost as a function of data archive volumes. The paper also identifies several remaining issues that must be addressed in order to make DeLorean a general solution to authenticating long-lived data.
NDN (Named Data Networking)通过对网络层数据包进行数字签名,实现以数据为中心的网络通信安全。由于某些数据的生命周期可以延长到许多年,因此它们的寿命超过了其签名的生命周期。介绍了一种保证长寿命数据长期真实性的认证框架NDN DeLorean。DeLorean的设计采用了一种公开可审计的簿记服务方法,以保持数据签名和签名生成时间的永久证明。为了评估DeLorean的可行性,本文提出了一套关于运营成本作为数据存档量函数的分析评估。为了使DeLorean成为验证长期数据的通用解决方案,本文还指出了必须解决的几个遗留问题。
{"title":"NDN DeLorean: an authentication system for data archives in named data networking","authors":"Yingdi Yu, A. Afanasyev, J. Seedorf, Zhiyi Zhang, Lixia Zhang","doi":"10.1145/3125719.3125724","DOIUrl":"https://doi.org/10.1145/3125719.3125724","url":null,"abstract":"Named Data Networking (NDN) enables data-centric security in network communication by mandating digital signatures on network-layer data packets. Since the lifetime of some data can extend to many years, they outlive the lifetime of their signatures. This paper introduces NDN DeLorean, an authentication framework to ensure the long-term authenticity of long-lived data. The design of DeLorean takes a publicly auditable bookkeeping service approach to keep permanent proofs of data signatures and the times when the signatures were generated. To assess DeLorean's feasibility the paper presents a set of analytical evaluations on the operational cost as a function of data archive volumes. The paper also identifies several remaining issues that must be addressed in order to make DeLorean a general solution to authenticating long-lived data.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"70 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"127333749","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 22
NDNCERT: universal usable trust management for NDN NDNCERT: NDN通用可用信任管理
Pub Date : 2017-09-26 DOI: 10.1145/3125719.3132090
Zhiyi Zhang, A. Afanasyev, Lixia Zhang
The Named Data Networking (NDN) architecture builds the security primitives into the network layer: all retrieved data packets must be signed to ensure their integrity authenticity and provenance. To ensure that these primitives are used in a meaningful way without imposing undue burdens on NDN users, the management of cryptographic keys and certificates needs to work in a simple, secure, and user-friendly way. This poster introduces the NDN Trust Management system (NDNCERT) which is designed to fill this need. NDNCERT provides flexible mechanisms to delegate trust between certificates, either within a single device (managing permissions for local applications on a node to operate under a given namespace) or across devices/entities. NDNCERT features a modular design for security challenges that establish trust through out-of-band means for certificate issuing. Once a node or an application obtains a valid certificate for its namespace (or being configured with a self-signed certificate), it automatically becomes a certificate authority for its namespace, and can use the same NDNCERT protocol to produce certificates for the sub-namespaces.
命名数据网络(NDN)体系结构将安全原语构建到网络层中:所有检索到的数据包必须经过签名,以确保其完整性、真实性和来源。为了确保以有意义的方式使用这些原语,而不会给NDN用户带来不必要的负担,加密密钥和证书的管理需要以一种简单、安全和用户友好的方式进行。这张海报介绍了NDN信任管理系统(NDNCERT),该系统旨在满足这一需求。NDNCERT提供了灵活的机制来在证书之间委托信任,无论是在单个设备内(管理节点上本地应用程序在给定命名空间下操作的权限)还是跨设备/实体。NDNCERT采用模块化设计来应对安全挑战,通过带外方式颁发证书来建立信任。一旦节点或应用程序获得了其名称空间的有效证书(或配置了自签名证书),它就自动成为其名称空间的证书颁发机构,并且可以使用相同的NDNCERT协议为子名称空间生成证书。
{"title":"NDNCERT: universal usable trust management for NDN","authors":"Zhiyi Zhang, A. Afanasyev, Lixia Zhang","doi":"10.1145/3125719.3132090","DOIUrl":"https://doi.org/10.1145/3125719.3132090","url":null,"abstract":"The Named Data Networking (NDN) architecture builds the security primitives into the network layer: all retrieved data packets must be signed to ensure their integrity authenticity and provenance. To ensure that these primitives are used in a meaningful way without imposing undue burdens on NDN users, the management of cryptographic keys and certificates needs to work in a simple, secure, and user-friendly way. This poster introduces the NDN Trust Management system (NDNCERT) which is designed to fill this need. NDNCERT provides flexible mechanisms to delegate trust between certificates, either within a single device (managing permissions for local applications on a node to operate under a given namespace) or across devices/entities. NDNCERT features a modular design for security challenges that establish trust through out-of-band means for certificate issuing. Once a node or an application obtains a valid certificate for its namespace (or being configured with a self-signed certificate), it automatically becomes a certificate authority for its namespace, and can use the same NDNCERT protocol to produce certificates for the sub-namespaces.","PeriodicalId":394653,"journal":{"name":"Proceedings of the 4th ACM Conference on Information-Centric Networking","volume":"5 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2017-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"129679035","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 18
期刊
Proceedings of the 4th ACM Conference on Information-Centric Networking
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1