Chuchotage: In-line Software Network Protocol Translation for (D)TLS

Forskningsoutput: Kapitel i bok/rapport/Conference proceedingKonferenspaper i proceedingPeer review

67 Nedladdningar (Pure)

Sammanfattning

The growing diversity of connected devices leads to complex network deployments, often made up of endpoints that implement in- compatible network application protocols. Communication between heterogeneous network protocols was traditionally enabled by hardware translators or gateways. However, such solutions are increasingly unfit to address the security, scalability, and latency requirements of modern software-driven deployments. To address these shortcomings we propose Chuchotage, a protocol translation architecture for secure and scalable machine-to-machine communication. Chuchotage enables in-line TLS interception and confidential protocol translation for software-defined networks. Translation is done in ephemeral, flow-specific Trusted Execution Environments and scales with the number of network flows. Our evaluation of Chuchotage implementing an HTTP to CoAP translation indicates a minimal transmission and translation overhead, allowing its integration with legacy or outdated deployments.
Originalspråkengelska
Titel på värdpublikationProceedings of the 24th International Conference on Information and Communications Security (ICICS'22)
Sidor589-607
DOI
StatusPublished - 2022 sep. 30
EvenemangProceedings of the 24th International Conference on Information and Communications Security, ICICS'22 - Canterbury, Storbritannien
Varaktighet: 2022 sep. 52022 sep. 8

Konferens

KonferensProceedings of the 24th International Conference on Information and Communications Security, ICICS'22
Land/TerritoriumStorbritannien
OrtCanterbury
Period2022/09/052022/09/08

Ämnesklassifikation (UKÄ)

  • Datavetenskap (datalogi)

Fingeravtryck

Utforska forskningsämnen för ”Chuchotage: In-line Software Network Protocol Translation for (D)TLS”. Tillsammans bildar de ett unikt fingeravtryck.

Citera det här