Security Support in Named Data Networking

Security Support in Named Data Networking
复制标题

命名数据网络中的安全支持

DOI:
--
复制
发表时间:
2018
期刊:
影响因子:
--
通讯作者:
Lixia Zhang
Lixia Zhang
中科院分区:
--
文献类型:
--
作者:
Zhiyi Zhang;Haitao Zhang;Eric Newberry;Spyridon Mastorakis;Yanbiao Li;Alexander Afanasyev;Lixia Zhang

文献摘要

被引文献

相似文献

本技术报告概述了近年来开发的命名数据网络(NDN)架构中的安全支持。NDN将通信模型从IP在由IP地址标识的主机之间传递数据包改变为检索命名和安全的数据包。因此,NDN从根本上改变了保护通信的方法。使命名数据成为架构的核心,这将导致一个新的安全框架:(i)直接保护数据,(ii)使用名称语义来推理应用程序的安全性。在本文中,我们介绍了NDN的安全引导、数据身份验证、完整性、机密性和可用性方法。请注意,本报告仍处于初步阶段。我们欢迎所有的评论,我们计划在不久的将来发布更新版本。
This technical report presents an overview of the security support in the Named Data Networking (NDN) architecture that has been developed over the recent years. NDN changes the communication model from IP’s delivery of packets between hosts identified by IP addresses to the retrieval of named and secured data packets. Consequently NDN fundamentally changes the approach to securing communications. Making named data the centerpiece of the architecture leads to a new security framework which: (i) secures the data directly, and (ii) uses name semantics for applications to reason about security. In this paper we introduce NDN’s approach to security bootstrapping, data authentication, integrity, confidentiality, and availability. Note that this report is still in preliminary stage. We welcome all comments, and we plan to post an updated version in the near future.