CNS Core: Medium: Privacy-Preserving and Censorship-Resistant Domain Name System
CNS 核心:中:隐私保护和抗审查域名系统
基本信息
- 批准号:2310927
- 负责人:
- 金额:$ 75万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2023
- 资助国家:美国
- 起止时间:2023-10-01 至 2026-09-30
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
The Domain Name System (DNS) is the phonebook of the Internet which maps human-friendly domain names to IP addresses. Without DNS, the Internet itself would not function. Despite the decades-long efforts to protect user privacy on the Internet, privacy remains an open issue for DNS. In general, access to a DNS resolver enables traffic snooping, i.e., realizing who is looking for what. Moreover, DNS is a perfect vehicle for censorship: preventing users to resolve domain names is one of the simplest, and often utilized, way to censor free and open access on the Internet. The key question this project aims to answer is whether a truly privacy-preserving and censorship-resistant DNS can be developed.The key thesis of this project is that the only way to guarantee full user privacy would be for the DNS server to do its job in the blind, i.e., by resolving domain names without knowing what they are. The latter statement seems counter-intuitive, but in reality several techniques exist which allow such operations. These techniques fall in the branch of Private Information Retrieval (PIR), which is achieved by various cryptographic tools such as homomorphic encryption. PIR protocols have long been considered impractical due to performance bottlenecks. The preliminary research and performance benchmarks demonstrate that the PIR performance is moving towards the practically usable territory in terms of query timescales, traffic overhead, and supported database size. The main goal of this project is to make PIR applicable to DNS by leveraging inherent features of the DNS systems and co-designing novel PIR protocols, thus making the full DNS privacy and censorship resistance a reality.This project has the potential to make a significant impact by enabling a scalable, incrementally-deployable, privacy-preserving, and censorship-resilient DNS system. The PIs plan to design and disseminate, as open-source, implementations of the system. It is expected that popular browsers will support the proposed privacy-preserving system by showing an icon, similar to the one for HTTPS, for the websites that support the single-server PDNS. The proposed research has societal impacts beyond the computing discipline because results from this project could lead to fundamental enhancements in terms of user privacy on the Internet. Moreover, it can make an important step towards thwarting network-level censorship, thus leading to free and open Internet and society.All the data associated with this project, including measurement data, code, and results, will be made publicly and openly available at http://networks.cs.northwestern.edu/PDNS/. This website will be maintained for the duration of the project, and all the data will remain available for download from the website for at least 5 years after the project is completed.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
域名系统(DNS)是互联网的电话簿,它将人性化的域名映射到IP地址。如果没有DNS,互联网本身将无法运行。尽管数十年来一直在努力保护互联网上的用户隐私,但隐私仍然是DNS的一个悬而未决的问题。通常,对DNS解析器的访问使得能够进行流量监听,即,意识到谁在找什么此外,DNS是审查的完美工具:阻止用户解析域名是审查互联网上免费和开放访问的最简单,也是经常使用的方法之一。这个项目的关键问题是,是否可以开发一个真正的隐私保护和审查抵抗DNS。这个项目的关键论点是,保证完全用户隐私的唯一方法是DNS服务器在盲人中完成其工作,即,通过解析域名而不知道它们是什么。后一种说法似乎违反直觉,但实际上存在几种允许这种操作的技术。这些技术属于私有信息检索(PIR)的分支,其通过诸如同态加密的各种密码工具来实现。由于性能瓶颈,PIR协议长期以来被认为是不切实际的。初步的研究和性能基准测试表明,PIR的性能正在走向实际可用的领土方面的查询时间尺度,流量开销,和支持的数据库大小。该项目的主要目标是通过利用DNS系统的固有特性和共同设计新颖的PIR协议,使PIR适用于DNS,从而实现完全的DNS隐私和审查抵抗。该项目有可能通过实现可扩展的,可增量部署的,隐私保护的和审查弹性的DNS系统产生重大影响。参与者计划设计和传播该系统的开放源码实施。预计流行的浏览器将通过显示支持单服务器PDNS的网站的图标(类似于HTTPS的图标)来支持所提出的隐私保护系统。拟议的研究具有超越计算学科的社会影响,因为该项目的结果可能导致互联网上用户隐私的根本增强。此外,它还可以在阻止网络审查方面迈出重要一步,从而实现自由开放的互联网和社会。与该项目相关的所有数据,包括测量数据、代码和结果,都将在http://networks.cs.northwestern.edu/PDNS/上公开发布。该网站将在项目期间维护,所有数据将在项目完成后至少5年内仍可从网站下载。该奖项反映了NSF的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Aleksandar Kuzmanovic其他文献
Aleksandar Kuzmanovic的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Aleksandar Kuzmanovic', 18)}}的其他基金
CNS Core: Small: Enabling Streaming Analytics at the Network Edge
CNS 核心:小型:在网络边缘启用流分析
- 批准号:
2226107 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
NeTS: Small: Incentivizing Internet-Scale Web Mining with Webcoin
NeTS:小型:利用 Webcoin 激励互联网规模的网络挖矿
- 批准号:
1810582 - 财政年份:2018
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
NeTS: Small: Collaborative Research: Leveraging Personalized Internet Services to Combat Online Trolling
NetS:小型:协作研究:利用个性化互联网服务打击在线恶搞
- 批准号:
1615837 - 财政年份:2016
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
NeTS: Small: Mashup Content Harvesting for an Open Internet
NeTS:小型:开放互联网的混搭内容收获
- 批准号:
1526052 - 财政年份:2015
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
NeTS: Small: Endpoint User Profile Control
NetS:小型:端点用户配置文件控制
- 批准号:
1319086 - 财政年份:2013
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
NetSE: Medium: Collaborative Research: Auditing Internet Content for Credibility, Fairness, and Privacy
NetSE:媒介:协作研究:审核互联网内容的可信度、公平性和隐私
- 批准号:
1064595 - 财政年份:2011
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
CAREER: Internet Audit: A Theory, Toolset, and Applications for a World without Net Neutrality
职业:互联网审计:没有网络中立性的世界的理论、工具集和应用
- 批准号:
0746360 - 财政年份:2008
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
CT-ISG: Pollution Resilience for Internet Caches
CT-ISG:互联网缓存的污染恢复能力
- 批准号:
0627715 - 财政年份:2006
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
相似国自然基金
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
- 批准号:82371765
- 批准年份:2023
- 资助金额:50 万元
- 项目类别:面上项目
锕系元素5f-in-core的GTH赝势和基组的开发
- 批准号:22303037
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:52 万元
- 项目类别:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:30 万元
- 项目类别:青年科学基金项目
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
- 批准号:
- 批准年份:2020
- 资助金额:55 万元
- 项目类别:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
- 批准号:92053110
- 批准年份:2020
- 资助金额:70.0 万元
- 项目类别:重大研究计划
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
- 批准号:81902805
- 批准年份:2019
- 资助金额:20.5 万元
- 项目类别:青年科学基金项目
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
- 批准号:41973063
- 批准年份:2019
- 资助金额:65.0 万元
- 项目类别:面上项目
CORDEX-CORE区域气候模拟与预估研讨会
- 批准号:41981240365
- 批准年份:2019
- 资助金额:1.5 万元
- 项目类别:国际(地区)合作与交流项目
RBM38通过协助Pol-ε结合、招募core调控HBV复制
- 批准号:31900138
- 批准年份:2019
- 资助金额:24.0 万元
- 项目类别:青年科学基金项目
相似海外基金
Collaborative Research: CNS Core: Medium: Movement of Computation and Data in Splitkernel-disaggregated, Data-intensive Systems
合作研究:CNS 核心:媒介:Splitkernel 分解的数据密集型系统中的计算和数据移动
- 批准号:
2406598 - 财政年份:2023
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: Reconfigurable Kernel Datapaths with Adaptive Optimizations
协作研究:CNS 核心:中:具有自适应优化的可重构内核数据路径
- 批准号:
2345339 - 财政年份:2023
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
Collaborative Research: CNS Core: Medium: Innovating Volumetric Video Streaming with Motion Forecasting, Intelligent Upsampling, and QoE Modeling
合作研究:CNS 核心:中:通过运动预测、智能上采样和 QoE 建模创新体积视频流
- 批准号:
2409008 - 财政年份:2023
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: Programmable Computational Antennas for Sensing and Communications
合作研究:中枢神经系统核心:中:用于传感和通信的可编程计算天线
- 批准号:
2343964 - 财政年份:2023
- 资助金额:
$ 75万 - 项目类别:
Standard Grant
CNS Core: Medium: A Systems and User-based Approach to Floating Point Correctness and Resilience
CNS 核心:中:基于系统和用户的浮点正确性和弹性方法
- 批准号:
2211315 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: The Privacy Backplane - A Full Stack Approach to Individualized Privacy Controls Throughout the Internet-of-Things
合作研究:CNS 核心:媒介:隐私背板 - 整个物联网个性化隐私控制的全栈方法
- 批准号:
2211508 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: Access, Mobility, and Security above 100 GHz
合作研究:CNS 核心:中:100 GHz 以上的访问、移动性和安全性
- 批准号:
2211617 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: Access, Mobility, and Security above 100 GHz
合作研究:CNS 核心:中:100 GHz 以上的访问、移动性和安全性
- 批准号:
2211618 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: Rethinking Multi-User VR - Jointly Optimized Representation, Caching and Transport
合作研究:CNS 核心:媒介:重新思考多用户 VR - 联合优化表示、缓存和传输
- 批准号:
2212200 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Medium: Rethinking Multi-User VR - Jointly Optimized Representation, Caching and Transport
合作研究:CNS 核心:媒介:重新思考多用户 VR - 联合优化表示、缓存和传输
- 批准号:
2212201 - 财政年份:2022
- 资助金额:
$ 75万 - 项目类别:
Continuing Grant