An Overview of Security Support in Named Data Networking

An Overview of Security Support in Named Data Networking
复制标题

DOI:
10.1109/mcom.2018.1701147
复制
发表时间:
2018-11-01
影响因子:
11.2
通讯作者:
Zhang, Lixia
Zhang, Lixia
中科院分区:
计算机科学1区
文献类型:
--
作者:
Zhang, Zhiyi;Yu, Yingdi;Zhang, Lixia

文献摘要

被引文献

相似文献

本文概述了过去几年开发的NDN体系结构中的安全机制。NDN将网络通信模式从向由IP地址标识的主机发送分组更改为检索命名和安全的数据分组。因此,NDN也从根本上改变了网络安全的方法。将命名数据作为体系结构的核心导致了一个新的安全框架,该框架直接保护数据,并使用名称语义使应用程序能够对安全性进行推理,并自动使用密钥。在本文中,我们将介绍NDN在安全引导、数据真实性、机密性和可用性方面的方法。
This article presents an overview of the security mechanisms in the NDN architecture that have been developed over the past several years. NDN changes the network communication model from the delivery of packets to hosts identified by IP addresses to the retrieval of named and secured data packets. Consequently, NDN also fundamentally changes the approaches to network security. Making named data the centerpiece of the architecture leads to a new security framework that secures data directly, and uses name semantics to enable applications to reason about security and to automate the use of cryptographic keys. In this article, we introduce NDN's approaches to security bootstrapping, data authenticity, confidentiality, and availability.