Matches in SemOpenAlex for { <https://semopenalex.org/work/W4296168439> ?p ?o ?g. }
- W4296168439 endingPage "259" @default.
- W4296168439 startingPage "217" @default.
- W4296168439 abstract "Today’s Internet is built on decades-old networking protocols that lack scalability, reliability and security. In response, the networking community has developed path-aware Internet architectures that solve these problems while simultaneously empowering end hosts to exert some control on their packets’ route through the network. In these architectures, autonomous systems authorize forwarding paths in accordance with their routing policies, and protect these paths using cryptographic authenticators. For each packet, the sending end host selects an authorized path and embeds it and its authenticators in the packet header. This allows routers to efficiently determine how to forward the packet. The central security property of the data plane, i.e., of forwarding, is that packets can only travel along authorized paths. This property, which we call path authorization, protects the routing policies of autonomous systems from malicious senders. The fundamental role of packet forwarding in the Internet’s ecosystem and the complexity of the authentication mechanisms employed call for a formal analysis. We develop IsaNet, a parameterized verification framework for data plane protocols in Isabelle/HOL. We first formulate an abstract model without an attacker for which we prove path authorization. We then refine this model by introducing a Dolev–Yao attacker and by protecting authorized paths using (generic) cryptographic validation fields. This model is parametrized by the path authorization mechanism and assumes five simple verification conditions. We propose novel attacker models and different sets of assumptions on the underlying routing protocol. We validate our framework by instantiating it with nine concrete protocol variants and prove that they each satisfy the verification conditions (and hence path authorization). The invariants needed for the security proof are proven in the parametrized model instead of the instance models. Our framework thus supports low-effort security proofs for data plane protocols. In contrast to what could be achieved with state-of-the-art automated protocol verifiers, our results hold for arbitrary network topologies and sets of authorized paths." @default.
- W4296168439 created "2022-09-18" @default.
- W4296168439 creator A5025344654 @default.
- W4296168439 creator A5037740498 @default.
- W4296168439 creator A5041880436 @default.
- W4296168439 date "2023-05-29" @default.
- W4296168439 modified "2023-09-28" @default.
- W4296168439 title "IsaNet: A framework for verifying secure data plane protocols" @default.
- W4296168439 cites W146244851 @default.
- W4296168439 cites W1480122568 @default.
- W4296168439 cites W1508967933 @default.
- W4296168439 cites W1536580911 @default.
- W4296168439 cites W1980507101 @default.
- W4296168439 cites W1987869670 @default.
- W4296168439 cites W1991234099 @default.
- W4296168439 cites W2003590000 @default.
- W4296168439 cites W2006435204 @default.
- W4296168439 cites W2010896385 @default.
- W4296168439 cites W2044186122 @default.
- W4296168439 cites W2045828738 @default.
- W4296168439 cites W2060349224 @default.
- W4296168439 cites W2061969020 @default.
- W4296168439 cites W2068617365 @default.
- W4296168439 cites W2091028025 @default.
- W4296168439 cites W2091877728 @default.
- W4296168439 cites W2099995703 @default.
- W4296168439 cites W2100415265 @default.
- W4296168439 cites W2114189125 @default.
- W4296168439 cites W2117226155 @default.
- W4296168439 cites W2129909248 @default.
- W4296168439 cites W2132107743 @default.
- W4296168439 cites W2136680211 @default.
- W4296168439 cites W2139350954 @default.
- W4296168439 cites W2151972741 @default.
- W4296168439 cites W2157921329 @default.
- W4296168439 cites W2166863759 @default.
- W4296168439 cites W2168277905 @default.
- W4296168439 cites W2179021181 @default.
- W4296168439 cites W2296143987 @default.
- W4296168439 cites W2316113835 @default.
- W4296168439 cites W2328819335 @default.
- W4296168439 cites W2525730961 @default.
- W4296168439 cites W2607309125 @default.
- W4296168439 cites W2613487677 @default.
- W4296168439 cites W2623090161 @default.
- W4296168439 cites W2724757561 @default.
- W4296168439 cites W2762861109 @default.
- W4296168439 cites W2763238401 @default.
- W4296168439 cites W2802459825 @default.
- W4296168439 cites W2932671002 @default.
- W4296168439 cites W2985691241 @default.
- W4296168439 cites W3092278829 @default.
- W4296168439 cites W3092635374 @default.
- W4296168439 cites W3162417966 @default.
- W4296168439 cites W3162919972 @default.
- W4296168439 cites W3189027064 @default.
- W4296168439 cites W3214700495 @default.
- W4296168439 cites W32641163 @default.
- W4296168439 cites W4234335113 @default.
- W4296168439 cites W4240146388 @default.
- W4296168439 cites W4250846042 @default.
- W4296168439 cites W4285212123 @default.
- W4296168439 cites W4296168439 @default.
- W4296168439 cites W66821545 @default.
- W4296168439 cites W3089682163 @default.
- W4296168439 doi "https://doi.org/10.3233/jcs-220021" @default.
- W4296168439 hasPublicationYear "2023" @default.
- W4296168439 type Work @default.
- W4296168439 citedByCount "1" @default.
- W4296168439 countsByYear W42961684392023 @default.
- W4296168439 crossrefType "journal-article" @default.
- W4296168439 hasAuthorship W4296168439A5025344654 @default.
- W4296168439 hasAuthorship W4296168439A5037740498 @default.
- W4296168439 hasAuthorship W4296168439A5041880436 @default.
- W4296168439 hasConcept C104954878 @default.
- W4296168439 hasConcept C10597312 @default.
- W4296168439 hasConcept C120314980 @default.
- W4296168439 hasConcept C158379750 @default.
- W4296168439 hasConcept C184896649 @default.
- W4296168439 hasConcept C31258907 @default.
- W4296168439 hasConcept C38652104 @default.
- W4296168439 hasConcept C41008148 @default.
- W4296168439 hasConcept C44010500 @default.
- W4296168439 hasConceptScore W4296168439C104954878 @default.
- W4296168439 hasConceptScore W4296168439C10597312 @default.
- W4296168439 hasConceptScore W4296168439C120314980 @default.
- W4296168439 hasConceptScore W4296168439C158379750 @default.
- W4296168439 hasConceptScore W4296168439C184896649 @default.
- W4296168439 hasConceptScore W4296168439C31258907 @default.
- W4296168439 hasConceptScore W4296168439C38652104 @default.
- W4296168439 hasConceptScore W4296168439C41008148 @default.
- W4296168439 hasConceptScore W4296168439C44010500 @default.
- W4296168439 hasIssue "3" @default.
- W4296168439 hasLocation W42961684391 @default.
- W4296168439 hasOpenAccess W4296168439 @default.
- W4296168439 hasPrimaryLocation W42961684391 @default.
- W4296168439 hasRelatedWork W1964971412 @default.
- W4296168439 hasRelatedWork W1976718066 @default.