首页 > 最新文献

ACM Sigcomm Computer Communication Review最新文献

英文 中文
On Integrating eBPF into Pluginized Protocols 关于将 eBPF 整合到插件化协议中
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2024-02-20 DOI: 10.1145/3649171.3649173
Quentin De Coninck, Louis Navarre, Nicolas Rybowski

eBPF is a popular technology originating from the Linux kernel that enables safely running user-provided programs in a kernel-context. This technology opened the door for efficient programming in the operating system, especially in its network stack. However, its applicability is not limited to the Linux kernel. Various efforts leveraged the eBPF Instruction Set Architecture (ISA) as the basis of other networking related use cases outside of the Linux kernel. This paper focuses on the pluginized protocols' use case such as PQUIC and xBGP where the eBPF ISA serves as the basis to execute plugins providing per-session protocol behavior. It first quickly describes how the Linux kernel builds around this eBPF ISA to provide enhanced in-kernel network programmability. Then, the paper considers the case of pluginized protocols. Leveraging eBPF outside of the Linux kernel environment requires complementing the eBPF ISA to meet the pluginized protocols' requirements. This paper details these integration efforts. Based on the lessons learned from these, it finally concludes by an applicability discussion of the eBPF ISA to other use cases.

eBPF 是源于 Linux 内核的一项流行技术,可在内核环境下安全运行用户提供的程序。这项技术为在操作系统(尤其是网络堆栈)中高效编程打开了大门。不过,它的适用范围并不局限于 Linux 内核。各种努力利用 eBPF 指令集架构(ISA)作为 Linux 内核之外其他网络相关用例的基础。本文重点介绍插件化协议用例,如 PQUIC 和 xBGP,eBPF ISA 在此基础上执行插件,提供按会话协议行为。本文首先快速描述了 Linux 内核如何围绕 eBPF ISA 提供增强的内核网络可编程性。然后,本文考虑了插件化协议的情况。在 Linux 内核环境之外利用 eBPF 需要对 eBPF ISA 进行补充,以满足插件化协议的要求。本文详细介绍了这些集成工作。最后,在总结经验教训的基础上,讨论了 eBPF ISA 在其他用例中的适用性。
{"title":"On Integrating eBPF into Pluginized Protocols","authors":"Quentin De Coninck, Louis Navarre, Nicolas Rybowski","doi":"10.1145/3649171.3649173","DOIUrl":"https://doi.org/10.1145/3649171.3649173","url":null,"abstract":"<p>eBPF is a popular technology originating from the Linux kernel that enables safely running user-provided programs in a kernel-context. This technology opened the door for efficient programming in the operating system, especially in its network stack. However, its applicability is not limited to the Linux kernel. Various efforts leveraged the eBPF Instruction Set Architecture (ISA) as the basis of other networking related use cases outside of the Linux kernel. This paper focuses on the pluginized protocols' use case such as PQUIC and xBGP where the eBPF ISA serves as the basis to execute plugins providing per-session protocol behavior. It first quickly describes how the Linux kernel builds around this eBPF ISA to provide enhanced in-kernel network programmability. Then, the paper considers the case of pluginized protocols. Leveraging eBPF outside of the Linux kernel environment requires complementing the eBPF ISA to meet the pluginized protocols' requirements. This paper details these integration efforts. Based on the lessons learned from these, it finally concludes by an applicability discussion of the eBPF ISA to other use cases.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"260 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2024-02-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139924797","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
The October 2023 Issue 2023 年 10 月刊
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2024-02-20 DOI: 10.1145/3649171.3649172
Steve Uhlig

This October 2023 issue contains three editorial notes.

The observing reader of CCR will have noticed that there is no July 2023 issue. There are three main factors at play here. Given the timing of our SIGCOMM conferences, summer is a low period for submissions to CCR. Then, as CCR is selective and its scope limited to timely works relevant to our community, few technical papers make it above our bar. Finally, I have witnessed a healthy shift away from technical papers towards more thought-provoking editorials over the last few years. We have enough conference and journals for technical papers to find an appropriate venue. On the other hand, our conferences and journals, due to their selective nature and the overly critical nature of the reviewing process, do not lend themselves to welcome thought-provoking and contentious contributions. Let CCR be their home.

本期 2023 年 10 月刊包含三篇社论。细心的 CCR 读者会发现,本期没有 2023 年 7 月刊。这主要有三个因素。考虑到 SIGCOMM 会议的时间安排,夏季是向 CCR 投稿的低谷期。然后,由于 CCR 是有选择性的,其范围仅限于与我们社区相关的及时作品,因此很少有技术论文能超过我们的标准。最后,在过去几年中,我看到了从技术论文向更具启发性的社论的健康转变。我们有足够的会议和期刊为技术论文找到合适的发表场所。另一方面,我们的会议和期刊由于其选择性和审稿过程过于挑剔的性质,并不欢迎发人深省和有争议的稿件。让 CCR 成为他们的家园。
{"title":"The October 2023 Issue","authors":"Steve Uhlig","doi":"10.1145/3649171.3649172","DOIUrl":"https://doi.org/10.1145/3649171.3649172","url":null,"abstract":"<p>This October 2023 issue contains three editorial notes.</p><p>The observing reader of CCR will have noticed that there is no July 2023 issue. There are three main factors at play here. Given the timing of our SIGCOMM conferences, summer is a low period for submissions to CCR. Then, as CCR is selective and its scope limited to timely works relevant to our community, few technical papers make it above our bar. Finally, I have witnessed a healthy shift away from technical papers towards more thought-provoking editorials over the last few years. We have enough conference and journals for technical papers to find an appropriate venue. On the other hand, our conferences and journals, due to their selective nature and the overly critical nature of the reviewing process, do not lend themselves to welcome thought-provoking and contentious contributions. Let CCR be their home.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"2 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2024-02-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139928082","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Can We Save the Public Internet? 我们能拯救公共互联网吗?
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2024-02-20 DOI: 10.1145/3649171.3649175
Marjory Blumenthal, Ramesh Govindan, Ethan Katz-Bassett, Arvind Krishnamurthy, James McCauley, Nick Merrill, Tejas Narechania, Aurojit Panda, Scott Shenker

The goal of this short document is to explain why recent developments in the Internet's infrastructure are problematic. As context, we note that the Internet was originally designed to provide a simple universal service - global end-to-end packet delivery - on which a wide variety of end-user applications could be built. The early Internet supported this packet-delivery service via an interconnected collection of commercial Internet Service Providers (ISPs) that we will refer to collectively as the "public Internet." The Internet has fulfilled its packet-delivery mission far beyond all expectations and is now the dominant global communications infrastructure. By providing a level playing field on which new applications could be deployed, the Internet has enabled a degree of innovation that no one could have foreseen. To improve performance for some common applications, "enhancements" such as caching (as in content-delivery networks) have been gradually added to the Internet. The resulting performance improvements are so significant that such enhancements are now effectively necessary to meet current content delivery demands. Despite these tangible benefits, this document argues that the way these enhancements are currently deployed seriously undermines the sustainability of the public Internet and could lead to an Internet infrastructure that reaches fewer people and is largely concentrated among only a few large-scale providers. We wrote this document because we fear that these developments are now decidedly tipping the Internet's playing field towards those who can deploy these enhancements at massive scale, which in turn will limit the degree to which the future Internet can support unfettered innovation. This document begins by explaining our concerns but goes on to articulate how this unfortunate fate can be avoided. To provide more depth for those who seek it, we provide a separate addendum with further detail.

本短文旨在解释互联网基础设施的最新发展为什么会出现问题。作为背景,我们注意到互联网最初的设计目的是提供一种简单的通用服务--全球端到端数据包传送--在此基础上可以建立各种各样的终端用户应用程序。早期的互联网通过商业互联网服务提供商(ISP)的互联集合来支持这种数据包传送服务,我们将其统称为 "公共互联网"。互联网完成了其数据包传送使命,远远超出了人们的预期,现已成为全球最主要的通信基础设施。通过提供一个可以部署新应用的公平竞争环境,互联网实现了前所未有的创新。为了提高一些常见应用的性能,互联网逐步增加了缓存(如内容交付网络)等 "增强功能"。由此带来的性能改进如此显著,以至于现在要满足当前的内容交付需求,实际上必须要有这种增强功能。尽管有这些实实在在的好处,但本文件认为,目前部署这些增强功能的方式严重破坏了公共互联网的可持续性,可能导致互联网基础设施覆盖的人群越来越少,而且主要集中在少数几个大型提供商手中。我们之所以撰写这份文件,是因为我们担心这些发展正在使互联网的竞争环境向那些能够大规模部署这些增强功能的公司倾斜,而这反过来又会限制未来互联网支持自由创新的程度。本文件首先解释了我们的担忧,然后阐述了如何避免这种不幸的命运。为了向有兴趣的读者提供更深入的信息,我们提供了一份单独的增编,其中包含更多细节。
{"title":"Can We Save the Public Internet?","authors":"Marjory Blumenthal, Ramesh Govindan, Ethan Katz-Bassett, Arvind Krishnamurthy, James McCauley, Nick Merrill, Tejas Narechania, Aurojit Panda, Scott Shenker","doi":"10.1145/3649171.3649175","DOIUrl":"https://doi.org/10.1145/3649171.3649175","url":null,"abstract":"<p>The goal of this short document is to explain why recent developments in the Internet's infrastructure are problematic. As context, we note that the Internet was originally designed to provide a simple universal service - global end-to-end packet delivery - on which a wide variety of end-user applications could be built. The early Internet supported this packet-delivery service via an interconnected collection of commercial Internet Service Providers (ISPs) that we will refer to collectively as the \"public Internet.\" The Internet has fulfilled its packet-delivery mission far beyond all expectations and is now the dominant global communications infrastructure. By providing a level playing field on which new applications could be deployed, the Internet has enabled a degree of innovation that no one could have foreseen. To improve performance for some common applications, \"enhancements\" such as caching (as in content-delivery networks) have been gradually added to the Internet. The resulting performance improvements are so significant that such enhancements are now effectively necessary to meet current content delivery demands. Despite these tangible benefits, this document argues that the way these enhancements are currently deployed seriously undermines the sustainability of the public Internet and could lead to an Internet infrastructure that reaches fewer people and is largely concentrated among only a few large-scale providers. We wrote this document because we fear that these developments are now decidedly tipping the Internet's playing field towards those who can deploy these enhancements at massive scale, which in turn will limit the degree to which the future Internet can support unfettered innovation. This document begins by explaining our concerns but goes on to articulate how this unfortunate fate can be avoided. To provide more depth for those who seek it, we provide a separate addendum with further detail.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"48 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2024-02-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139924799","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
The I/O Driven Server: From SmartNICs to Data Movement Controllers I/O 驱动型服务器:从智能网卡到数据移动控制器
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2024-02-20 DOI: 10.1145/3649171.3649174
Justine Sherry

Many researchers are turning to SmartNIC offloads to improve the performance of high-performance networked systems. In this editorial, I discuss why SmartNICs are an especially powerful form factor for improving I/O intensive applications, and how their position in the dataplane enables them to take on central role in managing I/O. Rather than focusing on the benefits of individual offloads, this paper aims to explore the position of SmartNICs in the overall system integration of datacenter servers at the hardware and software level. I argue that SmartNICs should be viewed as 'data movement controllers' (NIC-DMCs) which are responsible for tasks involved in moving data between network, CPU, accelerators, and other endpoints: multiplexing/steering, interfacing between protocols, and enforcing I/O policies. I then enumerate open questions in how the hardware and software systems of the future will evolve to accommodate a dedicated NIC-DMC which is independent of the CPU complex.

许多研究人员都在利用 SmartNIC 卸载来提高高性能网络系统的性能。在这篇社论中,我将讨论为什么 SmartNIC 是改进 I/O 密集型应用的一个特别强大的形式因素,以及它们在数据平面中的位置如何使它们在管理 I/O 方面发挥核心作用。本文的目的不是关注单个卸载的优势,而是探讨 SmartNIC 在硬件和软件层面的数据中心服务器整体系统集成中的地位。我认为,SmartNIC 应被视为 "数据移动控制器"(NIC-DMC),负责在网络、CPU、加速器和其他端点之间移动数据的任务:多路复用/转向、协议之间的接口以及执行 I/O 策略。然后,我列举了未来硬件和软件系统将如何发展,以适应独立于中央处理器的专用 NIC-DMC 的开放性问题。
{"title":"The I/O Driven Server: From SmartNICs to Data Movement Controllers","authors":"Justine Sherry","doi":"10.1145/3649171.3649174","DOIUrl":"https://doi.org/10.1145/3649171.3649174","url":null,"abstract":"<p>Many researchers are turning to SmartNIC offloads to improve the performance of high-performance networked systems. In this editorial, I discuss why SmartNICs are an especially powerful form factor for improving I/O intensive applications, and how their position in the dataplane enables them to take on central role in managing I/O. Rather than focusing on the benefits of individual offloads, this paper aims to explore the position of SmartNICs in the overall system integration of datacenter servers at the hardware and software level. I argue that SmartNICs should be viewed as 'data movement controllers' (NIC-DMCs) which are responsible for tasks involved in moving data between network, CPU, accelerators, and other endpoints: multiplexing/steering, interfacing between protocols, and enforcing I/O policies. I then enumerate open questions in how the hardware and software systems of the future will evolve to accommodate a dedicated NIC-DMC which is independent of the CPU complex.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"54 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2024-02-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139924687","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
A Retrospective on Campus Network Traffic Monitoring 校园网流量监控回顾
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2023-07-19 DOI: https://dl.acm.org/doi/10.1145/3610381.3610387
Martin Arlitt, Mehdi Karamollahi, Carey Williamson

On April 1, 2023 we stopped monitoring the traffic on our campus Internet link, nearly 20 years to the day since we first started doing so. During these two decades, we faced a vast array of issues that affected the collection, storage, analysis and backup of our monitoring data. In this paper we share some of our experiences, so that future networking researchers have an opportunity to learn from our successes as well as our many mistakes and misfortunes.

2023年4月1日,我们停止了对校园互联网链接的流量监控,距离我们第一次这样做已有近20年的时间。在这二十年中,我们面临着影响监测数据收集、存储、分析和备份的大量问题。在本文中,我们分享了一些我们的经验,以便未来的网络研究人员有机会从我们的成功以及我们的许多错误和不幸中学习。
{"title":"A Retrospective on Campus Network Traffic Monitoring","authors":"Martin Arlitt, Mehdi Karamollahi, Carey Williamson","doi":"https://dl.acm.org/doi/10.1145/3610381.3610387","DOIUrl":"https://doi.org/https://dl.acm.org/doi/10.1145/3610381.3610387","url":null,"abstract":"<p>On April 1, 2023 we stopped monitoring the traffic on our campus Internet link, nearly 20 years to the day since we first started doing so. During these two decades, we faced a vast array of issues that affected the collection, storage, analysis and backup of our monitoring data. In this paper we share some of our experiences, so that future networking researchers have an opportunity to learn from our successes as well as our many mistakes and misfortunes.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"397 ","pages":""},"PeriodicalIF":2.8,"publicationDate":"2023-07-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"138506613","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Report of 2021 DINRG Workshop on Centralization in the Internet 2021年DINRG互联网集中化研讨会报告
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2023-07-19 DOI: https://dl.acm.org/doi/10.1145/3610381.3610386
Christian Huitema, Geoff Huston, Dirk Kutscher, Lixia Zhang

The Internet Research Task Force (IRTF) Research Group on Decentralizing the Internet (DINRG) hosted a workshop on Centralization in the Internet on June 3, 2021. The workshop focused on painting a broad-brush landscape of the Internet centralization problem space: its starting point, its driving force, together with an articulation on what can and should be done.

互联网研究任务组(IRTF)互联网去中心化研究组(DINRG)于2021年6月3日举办了一场关于互联网中心化的研讨会。研讨会的重点是描绘互联网集中化问题空间的大致图景:它的起点,它的驱动力,以及可以做什么和应该做什么。
{"title":"Report of 2021 DINRG Workshop on Centralization in the Internet","authors":"Christian Huitema, Geoff Huston, Dirk Kutscher, Lixia Zhang","doi":"https://dl.acm.org/doi/10.1145/3610381.3610386","DOIUrl":"https://doi.org/https://dl.acm.org/doi/10.1145/3610381.3610386","url":null,"abstract":"<p>The Internet Research Task Force (IRTF) Research Group on Decentralizing the Internet (DINRG) hosted a workshop on <i>Centralization in the Internet</i> on June 3, 2021. The workshop focused on painting a broad-brush landscape of the Internet centralization problem space: its starting point, its driving force, together with an articulation on what can and should be done.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"376 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2023-07-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"138506622","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
The April 2023 Issue 2023年4月刊
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2023-07-19 DOI: https://dl.acm.org/doi/10.1145/3610381.3610382
Steve Uhlig

This April 2023 issue contains one technical paper and four editorial notes.

2023年4月刊包含一篇技术论文和四篇社论。
{"title":"The April 2023 Issue","authors":"Steve Uhlig","doi":"https://dl.acm.org/doi/10.1145/3610381.3610382","DOIUrl":"https://doi.org/https://dl.acm.org/doi/10.1145/3610381.3610382","url":null,"abstract":"<p>This April 2023 issue contains one technical paper and four editorial notes.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"357 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2023-07-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"138506598","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Vulnerability Disclosure Considered Stressful 被认为有压力的漏洞披露
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2023-07-19 DOI: https://dl.acm.org/doi/10.1145/3610381.3610383
Giovane C. M. Moura, John Heidemann

Vulnerability disclosure is a widely recognized practice in the software industry, but there is a lack of literature detailing the firsthand experiences of researchers who have gone through the process. This work aims to bridge that gap by sharing our personal experience of accidentally discovering a DNS vulnerability and navigating the vulnerability disclosure process for the first time. We document our mistakes and highlight the important lessons we learned, such as the fact that public disclosure can be effective but can also be more time-consuming and emotionally taxing than anticipated. Additionally, we discuss the ethical considerations and potential consequences that may arise during each step of the disclosure process. Lastly, drawing from our own experiences, we identify and discuss issues with the current disclosure process and propose recommendations for its improvement. Our ultimate aim is to provide valuable insights to fellow researchers who may encounter similar challenges in the future and contribute to the enhancement of the overall disclosure process for the benefit of the wider community.

在软件行业中,漏洞披露是一种被广泛认可的做法,但缺乏详细描述研究人员经历这一过程的第一手经验的文献。这项工作旨在通过分享我们偶然发现DNS漏洞的个人经验和第一次导航漏洞披露过程来弥合这一差距。我们记录了我们的错误,并强调了我们吸取的重要教训,比如公开披露可能是有效的,但也可能比预期的更耗时、更耗感情。此外,我们还讨论了在披露过程的每个步骤中可能出现的道德考虑和潜在后果。最后,根据自己的经验,我们发现并讨论了当前披露过程中存在的问题,并提出了改进建议。我们的最终目标是为未来可能遇到类似挑战的研究人员提供有价值的见解,并为加强整体披露过程做出贡献,以造福于更广泛的社区。
{"title":"Vulnerability Disclosure Considered Stressful","authors":"Giovane C. M. Moura, John Heidemann","doi":"https://dl.acm.org/doi/10.1145/3610381.3610383","DOIUrl":"https://doi.org/https://dl.acm.org/doi/10.1145/3610381.3610383","url":null,"abstract":"<p>Vulnerability disclosure is a widely recognized practice in the software industry, but there is a lack of literature detailing the firsthand experiences of researchers who have gone through the process. This work aims to bridge that gap by sharing our personal experience of accidentally discovering a DNS vulnerability and navigating the vulnerability disclosure process for the first time. We document our mistakes and highlight the important lessons we learned, such as the fact that public disclosure can be effective but can also be more time-consuming and emotionally taxing than anticipated. Additionally, we discuss the ethical considerations and potential consequences that may arise during each step of the disclosure process. Lastly, drawing from our own experiences, we identify and discuss issues with the current disclosure process and propose recommendations for its improvement. Our ultimate aim is to provide valuable insights to fellow researchers who may encounter similar challenges in the future and contribute to the enhancement of the overall disclosure process for the benefit of the wider community.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"373 1","pages":""},"PeriodicalIF":2.8,"publicationDate":"2023-07-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"138506623","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Recent Trends on Privacy-Preserving Technologies under Standardization at the IETF IETF标准化下隐私保护技术的最新趋势
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2023-07-19 DOI: https://dl.acm.org/doi/10.1145/3610381.3610385
Pratyush Dikshit, Jayasree Sengupta, Vaibhav Bajpai

End-users are concerned about protecting the privacy of their sensitive personal data that are generated while working on information systems. This extends to both the data they actively provide including personal identification in exchange for products and services as well as its related metadata such as unnecessary access to their location. This is when certain privacy-preserving technologies come into a place where Internet Engineering Task Force (IETF) plays a major role in incorporating such technologies at the fundamental level. Thus, this paper offers an overview of the privacy-preserving mechanisms for layer 3 (i.e. IP) and above that are currently under standardization at the IETF. This includes encrypted DNS at layer 5 classified as DNS-over-TLS (DoT), DNS-over-HTTPS (DoH), and DNS-over-QUIC (DoQ) where the underlying technologies like QUIC belong to layer 4. Followed by that, we discuss Privacy Pass Protocol and its application in generating Private Access Tokens and Passkeys to replace passwords for authentication at the application layer (i.e. end-user devices). Lastly, to protect user privacy at the IP level, Private Relays and MASQUE are discussed. This aims to make designers, implementers, and users of the Internet aware of privacy-related design choices.

终端用户关心如何保护他们在使用信息系统时产生的敏感个人数据的隐私。这扩展到他们主动提供的数据,包括个人身份信息,以换取产品和服务,以及相关的元数据,如不必要的访问他们的位置。这就是当某些隐私保护技术出现时,互联网工程任务组(IETF)在将这些技术整合到基础层面上发挥主要作用。因此,本文概述了目前IETF正在标准化的第3层(即IP)及以上层的隐私保护机制。这包括第5层的加密DNS,分为DNS-over- tls (DoT)、DNS-over- https (DoH)和DNS-over-QUIC (DoQ),其中QUIC等底层技术属于第4层。然后,我们讨论了隐私通行证协议及其在生成私有访问令牌和passkey中的应用,以取代应用层(即终端用户设备)的身份验证密码。最后,为了在IP层保护用户隐私,讨论了专用中继和掩码。其目的是使设计者、实现者和Internet用户意识到与隐私相关的设计选择。
{"title":"Recent Trends on Privacy-Preserving Technologies under Standardization at the IETF","authors":"Pratyush Dikshit, Jayasree Sengupta, Vaibhav Bajpai","doi":"https://dl.acm.org/doi/10.1145/3610381.3610385","DOIUrl":"https://doi.org/https://dl.acm.org/doi/10.1145/3610381.3610385","url":null,"abstract":"<p>End-users are concerned about protecting the privacy of their sensitive personal data that are generated while working on information systems. This extends to both the data they actively provide including personal identification in exchange for products and services as well as its related metadata such as unnecessary access to their location. This is when certain privacy-preserving technologies come into a place where Internet Engineering Task Force (IETF) plays a major role in incorporating such technologies at the fundamental level. Thus, this paper offers an overview of the privacy-preserving mechanisms for layer 3 (i.e. IP) and above that are currently under standardization at the IETF. This includes encrypted DNS at layer 5 classified as DNS-over-TLS (DoT), DNS-over-HTTPS (DoH), and DNS-over-QUIC (DoQ) where the underlying technologies like QUIC belong to layer 4. Followed by that, we discuss Privacy Pass Protocol and its application in generating Private Access Tokens and Passkeys to replace passwords for authentication at the application layer (i.e. end-user devices). Lastly, to protect user privacy at the IP level, Private Relays and MASQUE are discussed. This aims to make designers, implementers, and users of the Internet aware of privacy-related design choices.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"451 ","pages":""},"PeriodicalIF":2.8,"publicationDate":"2023-07-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"138506589","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Measuring Broadband America: A Retrospective on Origins, Achievements, and Challenges 衡量宽带美国:回顾起源、成就和挑战
IF 2.8 4区 计算机科学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Pub Date : 2023-07-19 DOI: https://dl.acm.org/doi/10.1145/3610381.3610384
Eric W. Burger, Padma Krishnaswamy, Henning Schulzrinne

The "Measuring Broadband America" program, run by the United States Federal Communications Commission (FCC), continually measures and releases data on the performance of consumer broadband access networks in the US. This paper presents a retrospective on the program, from its beginnings in 2010 to the present. It also reviews the underlying measurement approaches, philosophies, distinguishing features, and lessons learned over the program's duration thus far. We focus on fixed broadband access since it is the program component with the longest history. We also discuss future directions and challenges.

由美国联邦通信委员会(FCC)运营的“测量美国宽带”项目,持续测量和发布美国消费者宽带接入网络的性能数据。本文对该计划从2010年开始到现在进行了回顾。它还回顾了潜在的度量方法、哲学、显著的特征,以及迄今为止在项目持续期间学到的经验教训。我们专注于固定宽带接入,因为它是历史最悠久的节目组成部分。我们还讨论了未来的方向和挑战。
{"title":"Measuring Broadband America: A Retrospective on Origins, Achievements, and Challenges","authors":"Eric W. Burger, Padma Krishnaswamy, Henning Schulzrinne","doi":"https://dl.acm.org/doi/10.1145/3610381.3610384","DOIUrl":"https://doi.org/https://dl.acm.org/doi/10.1145/3610381.3610384","url":null,"abstract":"<p>The \"Measuring Broadband America\" program, run by the United States Federal Communications Commission (FCC), continually measures and releases data on the performance of consumer broadband access networks in the US. This paper presents a retrospective on the program, from its beginnings in 2010 to the present. It also reviews the underlying measurement approaches, philosophies, distinguishing features, and lessons learned over the program's duration thus far. We focus on fixed broadband access since it is the program component with the longest history. We also discuss future directions and challenges.</p>","PeriodicalId":50646,"journal":{"name":"ACM Sigcomm Computer Communication Review","volume":"390 ","pages":""},"PeriodicalIF":2.8,"publicationDate":"2023-07-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"138506616","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
期刊
ACM Sigcomm Computer Communication Review
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1