NeTS-FIND: Enabling Defense and Deterrence through Private Attribution

NetS-FIND:通过私人归属实现防御和威慑

基本信息

  • 批准号:
    0627157
  • 负责人:
  • 金额:
    $ 40万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2006
  • 资助国家:
    美国
  • 起止时间:
    2006-09-15 至 2007-08-31
  • 项目状态:
    已结题

项目摘要

Research in network security to date focuses largely on defenses---mechanisms that impede the activities of an adversary. Practical security, however, requires a balance between defense and deterrence. While defenses may block current attacks, without a meaningful risk of being caught adversaries are free to continue their attacks with impunity. Deterrence is usually predicated on effective means of attribution---tying an individual to an action. In the physical world attribution is achieved through forensic evidence, but constructing such evidence is uniquely challenging on the Internet.This project is developing a novel architectural primitive---private attribution, based on group signatures--that allows any network element to verify that a packet was sent by a member of a given group. Importantly, however, actually attributing the packet to a particular group member requires the participation of a set of trusted authorities, thereby ensuring the privacy of individual senders. In addition, this work explores content-based inverse firewalls that can inspect the content of traffic leaving a secured network, ensuring that sensitive information is kept within an enterprise. Approved data can then be labeled by the inspecting firewall, providing an audit trail should concerns arise.Broader Impacts: This research is developing a key architectural component to improve the level of security and assurance available to network services. In addition, the PIs are initiating a dialogue among both researchers and network operators about critical policy aspects of network security. In particular, information about the sources of both normal and attack traffic that must be safeguarded according to some policy.
迄今为止,对网络安全的研究主要集中在防御上,即阻止对手活动的机制。然而,实际安全需要在防御和威慑之间取得平衡。虽然防御可以阻止当前的攻击,但没有被抓住的风险,对手可以自由地继续攻击而不受惩罚。威慑通常基于有效的归因手段——将个人与行为联系起来。在现实世界中,归因是通过法医证据来实现的,但在互联网上构建这样的证据是一个独特的挑战。该项目正在开发一种新颖的体系结构原语——基于组签名的私有属性——允许任何网络元素验证数据包是由给定组的成员发送的。然而,重要的是,实际将数据包归属于特定的组成员需要一组受信任的权威机构的参与,从而确保单个发送者的隐私。此外,本工作还探讨了基于内容的反向防火墙,它可以检查离开安全网络的流量的内容,确保敏感信息保留在企业内。然后,检查防火墙可以对批准的数据进行标记,在出现问题时提供审计跟踪。更广泛的影响:这项研究正在开发一个关键的体系结构组件,以提高网络服务可用的安全性和保证级别。此外,pi正在研究人员和网络运营商之间发起关于网络安全关键政策方面的对话。特别是关于正常流量和攻击流量的来源信息,这些信息必须根据某些策略进行保护。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Alex Snoeren其他文献

Alex Snoeren的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Alex Snoeren', 18)}}的其他基金

CNS Core: Small: Designing Efficient Cloud Datacenter Network Fabrics
CNS 核心:小型:设计高效的云数据中心网络结构
  • 批准号:
    1911104
  • 财政年份:
    2019
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
II-New: A Dual-Purpose Data Analytics Laboratory
II-新:双用途数据分析实验室
  • 批准号:
    1629973
  • 财政年份:
    2016
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
NeTS: Small: Collaborative Research: Studying and Improving the Performance of Access Networks
NeTS:小型:协作研究:研究和提高接入网络的性能
  • 批准号:
    1422240
  • 财政年份:
    2014
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
EAGER: Personalization in the Information Age
EAGER:信息时代的个性化
  • 批准号:
    1255274
  • 财政年份:
    2012
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
NeTS: Small: Understanding Network Failure
NetS:小型:了解网络故障
  • 批准号:
    1116904
  • 财政年份:
    2011
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
Collaborative Research: NeTS-FIND: Privacy Preserving Attribution & Provenance
合作研究:NetS-FIND:隐私保护归因
  • 批准号:
    0722031
  • 财政年份:
    2007
  • 资助金额:
    $ 40万
  • 项目类别:
    Continuing Grant
CSR---PDOS: Harnessing Virtualized Cluster Resources
CSR---PDOS:利用虚拟化集群资源
  • 批准号:
    0615392
  • 财政年份:
    2006
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
NeTS-NBD: Distributed Rate Limiting
NeTS-NBD:分布式速率限制
  • 批准号:
    0627167
  • 财政年份:
    2006
  • 资助金额:
    $ 40万
  • 项目类别:
    Continuing Grant
Student Travel Support for ACM HotNets-III Workshop; October 15-16, 2004; San Diego, CA
ACM HotNets-III 研讨会的学生旅行支持;
  • 批准号:
    0436331
  • 财政年份:
    2004
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
CAREER: Decoupling Policy from Mechanism in Internet Routing
职业:将策略与互联网路由机制解耦
  • 批准号:
    0347949
  • 财政年份:
    2004
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant

相似国自然基金

Find-me和Eat-me信号在NOD.H-2h4 小鼠自身免疫甲状腺炎发病机制中的作用
  • 批准号:
    81370893
  • 批准年份:
    2013
  • 资助金额:
    80.0 万元
  • 项目类别:
    面上项目

相似海外基金

Hunting high and low: mapping ancient topography to find copper
高低狩猎:绘制古代地形以寻找铜
  • 批准号:
    IE230100098
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Early Career Industry Fellowships
Analysis of Zeb2 and its downstream genes to find the new target point of treatment for polycystic kidney disease
分析Zeb2及其下游基因寻找多囊肾治疗新靶点
  • 批准号:
    23K07684
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Grant-in-Aid for Scientific Research (C)
Farming Innovation Programme: Research starter Round 3, full stage - Study of historic orchards, to find 'natural survivors' and assess for natural low-carbon potential, and climate survivability
农业创新计划:研究启动第三轮,完整阶段 - 研究历史果园,寻找“自然幸存者”并评估自然低碳潜力和气候生存能力
  • 批准号:
    10086694
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Grant for R&D
Innovative automation to find new interventions that slow ageing
创新自动化寻找延缓衰老的新干预措施
  • 批准号:
    10060408
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Collaborative R&D
PathFinder: Empowering Young People to Find Their Creative Career Path
PathFinder:帮助年轻人找到他们的创意职业道路
  • 批准号:
    10071319
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Collaborative R&D
How to Find Life on Mars: Investigating Biological Potential and Putative Biosignature Formation
如何在火星上寻找生命:研究生物潜力和假定的生物特征形成
  • 批准号:
    2887781
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Studentship
Exploiting metabolite GPCR mechanotransduction to find new treatments for metabolic disorders
利用代谢物 GPCR 机械转导寻找代谢紊乱的新疗法
  • 批准号:
    2885713
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Studentship
The Mechanism of the Ability to Find Hope: Investigation of the Neural Basis and Potential for Clinical Application
寻找希望的能力的机制:神经基础和临床应用潜力的研究
  • 批准号:
    23K02922
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Grant-in-Aid for Scientific Research (C)
Collaborative Research: How to get SMAL: Studying island dwarfism to find Shared Molecular mechanisms Across Life history traits
合作研究:如何获得 SMAL:研究岛屿侏儒症以寻找跨生命史特征的共享分子机制
  • 批准号:
    2222086
  • 财政年份:
    2023
  • 资助金额:
    $ 40万
  • 项目类别:
    Continuing Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了