FABRID: Flexible Attestation-Based Routing for Inter-Domain Networks

04/06/2023
by   Cyrill Krähenbühl, et al.
0

In its current state, the Internet does not provide end users with transparency and control regarding on-path forwarding devices. In particular, the lack of network device information reduces the trustworthiness of the forwarding path and prevents end-user applications requiring specific router capabilities from reaching their full potential. Moreover, the inability to influence the traffic's forwarding path results in applications communicating over undesired routes, while alternative paths with more desirable properties remain unusable. In this work, we present FABRID, a system that enables applications to forward traffic flexibly, potentially on multiple paths selected to comply with user-defined preferences, where information about forwarding devices is exposed and transparently attested by autonomous systems (ASes). The granularity of this information is chosen by each AS individually, protecting them from leaking sensitive network details, while the secrecy and authenticity of preferences embedded within the users' packets are protected through efficient cryptographic operations. We show the viability of FABRID by deploying it on a global SCION network test bed, and we demonstrate high throughput on commodity hardware.

READ FULL TEXT

page 4

page 6

page 17

page 18

research
01/31/2023

Leveraging the SCION Internet Architecture to Accelerate File Transfers over BitTorrent

As the needs of Internet users and applications significantly changed ov...
research
02/08/2018

PTP: Path-specified Transport Protocol for Concurrent Multipath Transmission in Named Data Networks

Named Data Networking (NDN) is a promising Future Internet architecture ...
research
11/01/2022

Carbon Footprints on Inter-Domain Paths: Uncovering CO2 Tracks on Global Networks

In the years after signing the Paris agreement, corporations have been e...
research
09/07/2023

Inter-Domain Routing with Extensible Criteria

With the rapid evolution and diversification of Internet applications, t...
research
03/01/2022

Coexistence of Age Sensitive Traffic and High Throughput Flows: Does Prioritization Help?

We study the coexistence of high throughput traffic flows with status up...
research
04/10/2018

What's (Not) Validating Network Paths: A Survey

Validating network paths taken by packets is critical for a secure Inter...
research
10/12/2017

Shortcuts through Colocation Facilities

Network overlays, running on top of the existing Internet substrate, are...

Please sign up or login with your details

Forgot password? Click here to reset