Accountable Internet Protocol (AIP)

被引:111
作者
Andersen, David G. [1 ]
Balakrishnan, Hari [2 ]
Feamster, Nick
Koponen, Teemu
Moon, Daekyeong [3 ]
Shenker, Scott [3 ]
机构
[1] Carnegie Mellon Univ, Pittsburgh, PA 15213 USA
[2] MIT, Cambridge, MA 02139 USA
[3] Univ Calif Berkeley, Berkeley, CA 94720 USA
基金
美国国家科学基金会;
关键词
design; security; Internet architecture; accountability; address; scalability;
D O I
10.1145/1402946.1402997
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper presents AIP (Accountable Internet Protocol), a network architecture that provides accountability as a first-order property. AIP uses a hierarchy of self-certifying addresses, in which each component is derived from the public key of the corresponding entity. We discuss how AIP enables simple solutions to source spoofing, denial-of-service, route hijacking, and route forgery. We also discuss how AIP's design meets the challenges of scaling, key management, and traffic engineering.
引用
收藏
页码:339 / 350
页数:12
相关论文
共 45 条
[1]  
ANDERSEN D, 2007, P 6 ACM WORKSH HOT T
[2]  
[Anonymous], 2006, ITRS INT TECHNOLOGY
[3]  
[Anonymous], 2267 RFC INT ENG TAS
[4]  
[Anonymous], LOCATOR ID IN PRESS
[5]  
[Anonymous], 2005, RFC3972
[6]  
[Anonymous], 2401 RFC INT ENG TAS
[7]  
*APNIC, APNIC RES CERT PAG
[8]  
Argyraki K.J., 2005, P USENIX ANN TECHN C
[9]  
BEVERLY R, 2005, P SRUTI WORKSH JUL
[10]  
*CNET NEWS COM, ROUT GLITCH CUTS NET