Universitat Politècnica de Catalunya. Departament d'Enginyeria Telemàtica
Universitat Politècnica de Catalunya. SERTEL - Serveis Telemàtics
2013
The security of the Peer-to-Peer (P2P) overlays networks has been questioned for years. Many works have been proposed to provide secure routing, anonymity, reputation systems, confidentiality, etc. However, the identity assignment has been less considered. These networks are designed so that each user has a unique identifier (nodeID), but the most of identity assignment systems allow malicious users to obtain a set of nodeIDs or even select certain identifiers. Thus, these users can disrupt the proper operation of a P2P overlay. In this paper, we propose a nodeID assignment protocol based on the issue of implicit certificates. Our purpose is to provide security services to struggle against the most of security threats in these networks with special attention to the identity assignment. This approach is based on the use of certificates and the joint generation of nodeIDs between a Certification Authority (CA) and the user. In addition, the use of implicit certificates presents certain advantages over the use of traditional certificates (explicit certificates).
Peer Reviewed
Postprint (published version)
Conference report
English
Àrees temàtiques de la UPC::Enginyeria de la telecomunicació::Telemàtica i xarxes d'ordinadors; Àrees temàtiques de la UPC::Informàtica::Seguretat informàtica; Peer-to-peer architecture (Computer networks); Computer security; Identity management; Implicit certificates; Peer-to-peer overlays; Sybil attack; Eclipse attack; Xarxes punt a punt (Xarxes d'ordinadors); Seguretat informàtica
Springer International Publishing
http://link.springer.com/chapter/10.1007%2F978-3-642-38323-6_11
http://creativecommons.org/licenses/by-nc-nd/3.0/es/
Restricted access - publisher's policy
Attribution-NonCommercial-NoDerivs 3.0 Spain
E-prints [72954]