Exploiting Satellite Broadcast despite HTTPS

11/13/2019
by   Nikos Fotiou, et al.
0

HTTPS enhances end-user privacy and is often preferred or enforced by over-the-top content providers, but renders inoperable all intermediate network functions operating above the transport layer, including caching, content/protocol optimization, and security filtering tools. These functions are crucial for the optimization of integrated satellite-terrestrial networks. Additionally, due to the use of end-to-end and per-session encryption keys, the advantages of a satellite's wide-area broadcasting capabilities are limited or even negated completely. This paper investigates two solutions for authorized TLS interception that involve TLS splitting. We present how these solutions can be incorporated into integrated satellite-terrestrial networks and we discuss their trade-offs in terms of deployment, performance, and privacy. Furthermore, we design a solution that leverages satellite broadcast transmission even in the presence of TLS (i.e. with the use of HTTPS) by exploiting application layer encryption in the path between the satellite terminal and the TLS server. Our findings indicate that even if no other operation than TLS splitting is performed, TLS handshake time, which involves roundtrips through possibly a Geosynchronous satellite, can be reduced by up to 94 an application layer encryption solution with TLS splitting, broadcast transmissions can be exploited

READ FULL TEXT
research
08/16/2022

Achieve Fully Decentralized End to End Encryption Meeting via Blockchain

Zoom Meeting is an enterprise online video conferencing solution with re...
research
01/04/2021

Caching in Heterogeneous Satellite Networks with Fountain Codes

In this paper we investigate the performance of caching schemes based on...
research
06/18/2020

GNSS Spoofing Detection via Opportunistic IRIDIUM Signals

In this paper, we study the privately-own IRIDIUM satellite constellatio...
research
07/17/2023

Secure Middlebox-Assisted QUIC

While the evolution of the Internet was driven by the end-to-end model, ...
research
09/29/2022

Hidden in Plain Sight: Exploring Encrypted Channels in Android apps

As privacy features in Android operating system improve, privacy-invasiv...
research
12/27/2022

Cache Placement in an NDN Based LEO Satellite Network Constellation

The efforts to replace the successful, albeit aging, TCP/IP Internet arc...
research
06/30/2023

MCQUIC – A Multicast Extension for QUIC

Mass live content, such as world cups, the Superbowl or the Olympics, at...

Please sign up or login with your details

Forgot password? Click here to reset