Secure Middlebox-Assisted QUIC

07/17/2023
by   Mike Kosek, et al.
0

While the evolution of the Internet was driven by the end-to-end model, it has been challenged by many flavors of middleboxes over the decades. Yet, the basic idea is still fundamental: reliability and security are usually realized end-to-end, where the strong trend towards ubiquitous traffic protection supports this notion. However, reasons to break up, or redefine the ends of, end-to-end connections have always been put forward in order to improve transport layer performance. Yet, the consolidation of the transport layer with the end-to-end security model as introduced by QUIC protects most protocol information from the network, thereby eliminating the ability to modify protocol exchanges. In this paper, we enhance QUIC to selectively expose information to intermediaries, thereby enabling endpoints to consciously insert middleboxes into an end-to-end encrypted QUIC connection while preserving its privacy, integrity, and authenticity. We evaluate our design in a distributed Performance Enhancing Proxy environment over satellite networks, finding that the performance improvements are dependent on the path and application layer properties: the higher the round-trip time and loss, and the more data is transferred over a connection, the higher the benefits of Secure Middlebox-Assisted QUIC.

READ FULL TEXT

page 4

page 7

research
10/06/2020

QUIC (Quick UDP Internet Connections) – A Quick Study

Main responsibility of a transport protocol is to support communication ...
research
10/11/2018

QUIC and SATCOM

We analyze QUIC transport protocol behavior over a satellite communicati...
research
05/02/2022

HTTPA/2: a Trusted End-to-End Protocol for Web Services

We received positive feedback and inquiries on the previous work of HTTP...
research
04/08/2018

TCP Decoupling for Next Generation Communication System

In traditional networks, interfaces of network nodes are duplex. But, em...
research
11/13/2019

Exploiting Satellite Broadcast despite HTTPS

HTTPS enhances end-user privacy and is often preferred or enforced by ov...
research
10/30/2020

A survey and analysis of TLS interception mechanisms and motivations

TLS is an end-to-end protocol designed to provide confidentiality and in...
research
04/12/2019

QUICker connection establishment with out-of-band validation tokens

QUIC is a secure transport protocol and aims to improve the performance ...

Please sign up or login with your details

Forgot password? Click here to reset