NetCrypt: A Transparent Secure Communication Service
نویسندگان
چکیده
In this paper we describe the architecture and performance characteristics of a transparent, secure communication service developed for the Linux operating system. We address two key issues: performance and distributed key management. In distributed systems, conventional cryptography provides good performance at the cost of unacceptable key distribution overhead, while public key cryptography provides scalable key distribution but suuers from poor performance. We present a hybrid solution which uses public key cryptography for key management and conventional cryptography for fast block encryption. Detailed discussions of the system design, operation, and protocols are given. Finally, we present the results of our performance testing, and analyze to what extent we attained our stated goals.
منابع مشابه
SILVER: Fine-Grained and Transparent Protection Domain Primitives in Commodity OS Kernel
Untrusted kernel extensions remain one of the major threats to the security of commodity OS kernels. Current containment approaches still have limitations in terms of security, granularity and flexibility, primarily due to the absence of secure resource management and communication methods. This paper presents SILVER, a framework that offers transparent protection domain primitives to achieve f...
متن کاملSupporting Secure and Transparent Delegation in the CORBA Proxy Platform π2
π is a generic CORBA proxy platform that is used to support applications in mobile and wireless environments. π consists of two proxies which are transparently integrated into the application. Due to the broadcast characteristics of wireless communication, mobile users have very high security requirements. Since the CORBA security service as the standard approach for securing CORBA applications...
متن کاملSecure Communication in Shotgun Cellular Systems
In this paper, we analyze the secure connectivity in Shotgun cellular systems (SCS: Wireless communication systems with randomly placed base stations) by Poisson intrinsically secure communication graph (IS-graph), i.e., a random graph which describes the connections that are secure over a network. For a base-station in SCS, a degree of secure connections is determined over two channel models: ...
متن کاملFATIMA: A Firewall-Aware Transparent Internet Mobility Architecture
Ubiquitous communication will be one of the paradigms for the next decades. Mobile communication systems experience tremendous growth rates, Internet access is integrated in vehicles, pedestrians use Internet-ready mobile phones. This use of the Internet demands for a highly reliable and secure system, especially when used in nonacademical environments like remote offices, e-commerce, or traffi...
متن کاملA Middleware Service for Secure Group Communication in Mobile Ad Hoc Networks
Secure group communication in mobile ad hoc networks is often dynamic and impromptu, and thus requires efficient and automated secure group management and seamless combination of secure groups with distributed applications running upon them. Existing approaches to secure group communication cannot satisfy these requirements. In this paper, an automated secure group management approach is presen...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 1997