A credential-based data path architecture for assurable global networking

被引:0
|
作者
Wolf, Tilman [1 ]
机构
[1] Univ Massachusetts, Dept Elect & Comp Engn, Amherst, MA 01003 USA
来源
2007 IEEE MILITARY COMMUNICATIONS CONFERENCE, VOLS 1-8 | 2007年
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The main limitation for achieving information assurance in current data networks ties in absence of security considerations in the original Internet architecture. This shortcoming leads to the need for a new approach to achieving information assurance in networks. We propose a network architecture that uses credentials in the data path to identify, validate, monitor, and control data flows within the network. The important aspect of this approach is that credentials are tracked on the data path of the network, not just the end-systems, which implies that each and every packet can be audited. We present a credentials design that is based on Bloom filters and can achieve the desired properties to provide data path assurance.
引用
收藏
页码:3051 / 3057
页数:7
相关论文
共 50 条
  • [31] UNIX system V data networking architecture
    Brown, L.M.
    AT&T Technology, 1988, 3 (03): : 16 - 25
  • [32] A CAVALIER Architecture for Metro Data Center Networking
    Lodha, Akhil
    Gumaste, Ashwin
    Wang, Jianping
    Ghani, Nasir
    2008 5TH INTERNATIONAL CONFERENCE ON BROADBAND COMMUNICATIONS, NETWORKS AND SYSTEMS (BROADNETS 2008), 2008, : 169 - +
  • [33] Topology-Based Data Dissemination Approaches for Large Scale Data Centric Networking Architecture
    Chen Jia
    Zhang Hongke
    Zhou Huachun
    CHINA COMMUNICATIONS, 2013, 10 (09) : 80 - 96
  • [34] A Novel Vehicular Information Network Architecture Based on Named Data Networking (NDN)
    Yan, Zhiwei
    Zeadally, Sherali
    Park, Yong-Jin
    IEEE INTERNET OF THINGS JOURNAL, 2014, 1 (06): : 525 - 532
  • [35] A Centralized Clustering based Hybrid Vehicular Networking Architecture for Safety Data Delivery
    Shi, Chenhao
    Zhou, Yi
    Li, Wei
    Li, Huanhuan
    Lu, Ning
    Cheng, Nan
    Yang, Tingting
    GLOBECOM 2017 - 2017 IEEE GLOBAL COMMUNICATIONS CONFERENCE, 2017,
  • [36] Policy Architecture for Credential Based Access Control in Open Access Environment
    Dagdee, Nirmal
    Vijaywargiya, Ruchi
    JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2011, 6 (01): : 39 - 47
  • [37] Heterogeneous Networking Architecture Based on SDN
    SHU Yong’an
    ChineseJournalofElectronics, 2017, 26 (01) : 166 - 171
  • [38] Heterogeneous Networking Architecture Based on SDN
    Shu Yong'an
    CHINESE JOURNAL OF ELECTRONICS, 2017, 26 (01) : 166 - 171
  • [39] Optical grid networking exploiting path computation element (PCE) architecture
    Cugini, Filippo
    Xu, Sugang
    Harai, Hiroaki
    Paolucci, Francesco
    Valcarenghi, Luca
    Castoldi, Piero
    INTERNATIONAL JOURNAL OF COMMUNICATION NETWORKS AND DISTRIBUTED SYSTEMS, 2010, 5 (03) : 246 - 262
  • [40] Opportunistic On-Path Caching for Named Data Networking
    Hu, Xiaoyan
    Gong, Jian
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2014, E97B (11) : 2360 - 2367