Delegation and Revocation for Internet Security
互联网安全的委托和撤销
基本信息
- 批准号:RGPIN-2019-06155
- 负责人:
- 金额:$ 2.04万
- 依托单位:
- 依托单位国家:加拿大
- 项目类别:Discovery Grants Program - Individual
- 财政年份:2021
- 资助国家:加拿大
- 起止时间:2021-01-01 至 2022-12-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
This research program focuses on designing and developing systems and protocols to enable secure delegation of services and trust to third parties. For example, when a website relies on third party services, the user (and their browser) need to be confident that this third party is securely delegated to act on behalf of that website, and to only perform the actions it is delegated to do. Additionally, if such delegation expires, or if the website wishes to discontinue such delegation, the browser needs to be aware of this to detect and prevent suspicious activities. Secure delegation and revocation is becoming increasingly important for Internet services and operations. Many academic proposals face deployability challenges in practice due to the lack of secure delegation standards. For example, a geolocation service provider can protect users from man-in-the-middle attacks by providing users with an assurance of the geographic location where the physical server they are contacting resides. Users can then have the option to terminate a connection, or refrain from proceeding with a transaction, if they do not trust the location of that server. Another example is when an authentication server (e.g., the user's email provider) relies on users' geographic locations (given their consent) to protect their accounts from impersonation by attackers. Because robust Internet geolocation techniques often require a verification infrastructure, it does not make financial sense to many websites to deploy and maintain such an infrastructure on their own. It will thus be of high value to securely delegate third parties for reliable geolocation. Other benefits of secure delegation and revocation also exist for other applications, such as securing DNS delegation (e.g., to address DNS-based Internet censorship), mail server delegation (e.g., to prevent email impersonation by attackers), CDN delegation (e.g., to prevent malicious CDNs from distributing content on behalf of websites which they are not supposed to distribute), and the delegation of third party certification authorities to issue certificates to websites ensuring their identities.
该研究计划的重点是设计和开发系统和协议,以实现对第三方的服务和信任的安全委托。例如,当网站依赖于第三方服务时,用户(及其浏览器)需要确信该第三方被安全地委托代表该网站行事,并且仅执行其被委托执行的操作。此外,如果这种授权到期,或者如果网站希望停止这种授权,浏览器需要知道这一点,以检测和防止可疑活动。安全的委托和撤销对于互联网服务和操作变得越来越重要。由于缺乏安全的授权标准,许多学术提案在实践中面临可部署性的挑战。例如,地理定位服务提供商可以通过向用户提供他们正在联系的物理服务器所在的地理位置的保证来保护用户免受中间人攻击。然后,如果用户不信任该服务器的位置,则可以选择终止连接或停止继续进行交易。另一示例是当认证服务器(例如,用户的电子邮件提供商)依赖于用户的地理位置(在他们同意的情况下)来保护他们的帐户免受攻击者的冒充。由于强大的互联网地理定位技术通常需要验证基础设施,因此对于许多网站来说,自行部署和维护这样的基础设施在经济上是没有意义的。因此,安全地委托第三方进行可靠的地理定位将具有很高的价值。安全委托和撤销的其他益处也存在于其他应用中,诸如保护DNS委托(例如,以解决基于DNS的互联网审查),邮件服务器委托(例如,以防止攻击者冒充电子邮件),CDN委托(例如,防止恶意CDN代表它们不应该分发的网站分发内容),以及委托第三方认证机构向网站颁发证书,以确保其身份。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Abdou, AbdelRahman其他文献
Comparative Analysis of Control Plane Security of SDN and Conventional Networks
- DOI:
10.1109/comst.2018.2839348 - 发表时间:
2018-01-01 - 期刊:
- 影响因子:35.6
- 作者:
Abdou, AbdelRahman;van Oorschot, Paul C.;Wan, Tao - 通讯作者:
Wan, Tao
Abdou, AbdelRahman的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Abdou, AbdelRahman', 18)}}的其他基金
Delegation and Revocation for Internet Security
互联网安全的委托和撤销
- 批准号:
RGPIN-2019-06155 - 财政年份:2022
- 资助金额:
$ 2.04万 - 项目类别:
Discovery Grants Program - Individual
Delegation and Revocation for Internet Security
互联网安全的委托和撤销
- 批准号:
RGPIN-2019-06155 - 财政年份:2020
- 资助金额:
$ 2.04万 - 项目类别:
Discovery Grants Program - Individual
相似海外基金
Collaborative Research: SaTC: CORE: Medium: Cryptographic accumulators and revocation of credentials
协作研究:SaTC:核心:中:加密累加器和凭证撤销
- 批准号:
2247306 - 财政年份:2023
- 资助金额:
$ 2.04万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Cryptographic accumulators and revocation of credentials
协作研究:SaTC:核心:中:加密累加器和凭证撤销
- 批准号:
2247305 - 财政年份:2023
- 资助金额:
$ 2.04万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Cryptographic accumulators and revocation of credentials
协作研究:SaTC:核心:中:加密累加器和凭证撤销
- 批准号:
2247307 - 财政年份:2023
- 资助金额:
$ 2.04万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Cryptographic accumulators and revocation of credentials
协作研究:SaTC:核心:中:加密累加器和凭证撤销
- 批准号:
2247304 - 财政年份:2023
- 资助金额:
$ 2.04万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Cryptographic accumulators and revocation of credentials
协作研究:SaTC:核心:中:加密累加器和凭证撤销
- 批准号:
2247308 - 财政年份:2023
- 资助金额:
$ 2.04万 - 项目类别:
Standard Grant
Delegation and Revocation for Internet Security
互联网安全的委托和撤销
- 批准号:
RGPIN-2019-06155 - 财政年份:2022
- 资助金额:
$ 2.04万 - 项目类别:
Discovery Grants Program - Individual
Delegation and Revocation for Internet Security
互联网安全的委托和撤销
- 批准号:
RGPIN-2019-06155 - 财政年份:2020
- 资助金额:
$ 2.04万 - 项目类别:
Discovery Grants Program - Individual
A Study of Exclusivity of Action for the Revocation of Administrative Disposition
撤销行政处分之诉的排他性研究
- 批准号:
19K13506 - 财政年份:2019
- 资助金额:
$ 2.04万 - 项目类别:
Grant-in-Aid for Early-Career Scientists
Delegation and Revocation for Internet Security
互联网安全的委托和撤销
- 批准号:
RGPIN-2019-06155 - 财政年份:2019
- 资助金额:
$ 2.04万 - 项目类别:
Discovery Grants Program - Individual
Delegation and Revocation for Internet Security
互联网安全的委托和撤销
- 批准号:
DGECR-2019-00001 - 财政年份:2019
- 资助金额:
$ 2.04万 - 项目类别:
Discovery Launch Supplement