Towards securing internet eXchange points against curious onlooKers

Chiesa, Marco;Demmler, D.;Canini, M.;Schapira, M.;Schneider, T.
(2016) Applied Networking Research Workshop — Location: Berlin, Germany

Files

main.pdf
  • Closed Access
  • Adobe PDF
  • 240.08 KB

Details

Authors
  • Chiesa, MarcoUCLouvain
    Author
  • Demmler, D.
    Author
  • Canini, M.
    Author
  • Schapira, M.
    Author
  • Schneider, T.
    Author
Abstract
The growing relevance of Internet eXchange Points (IXPs), where an increasing number of networks exchange routing in-formation, poses fundamental questions regarding the privacy guarantees of confidential business information. To facilitate the exchange of routes among their members, IXPs provide Route Server (RS) services to dispatch the routes according to each member's export policies. Nowadays, to make use of RSes, these policies must be disclosed to the IXP. This state of affairs raises privacy concerns among network admin-istrators and even deters some networks from subscribing to RS services. We design sixpack (which stands for "Secur-ing Internet eXchange Points Against Curious onlooKers"), a RS service that leverages Secure Multi-Party Computa-tion (SMPC) techniques to keep export policies confidential, while maintaining the same functionalities as today's RSes. We assess the effectiveness and scalability of our system by evaluating our prototype implementation and using traces of data from one of the largest IXPs in the world. © 2016 Copyright held by the owner/author(s).
Affiliations

Citations

Chiesa, M., Demmler, D., Canini, M., Schapira, M., & Schneider, T. (2016). Towards securing internet eXchange points against curious onlooKers. Applied Networking Research Workshop, Berlin, Germany. https://hdl.handle.net/2078.5/226973