Vault: A secure binding service

Guor Huar Lu, Changho Choi, Zhi-Li Zhang

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Binding services are crucial building blocks in networks and networked applications. A binding service (e.g., the Domain Name System (DNS)) maps certain information, namely, binding keys (e.g., host names), to other information, i.e., binding values (e.g., IP addresses), and answers queries for such key-value bindings. Clearly, building secure binding services that ensure the integrity and authenticity of bindings are vital to the correct operations of many networks and networked applications. In this paper we present a novel approach for building generic secure binding services that allow arbitrary key-value bindings as (trusted) infrastructure services to support a variety of networks and networked applications. We combine the Identity-Based Encryption (IBE) crypto-mechanisms with distributed hash table (DHT) techniques to develop an innovative architecture for building scalable, robust and secure binding services. Using this architecture, we implement a prototype system called Vault and evaluate its performance both in a local testbed and on the PlanetLab.

Original languageEnglish (US)
Title of host publicationProceedings - 14th IEEE International Conference on Network Protocols, ICNP 2006
Pages168-177
Number of pages10
DOIs
StatePublished - 2006
Event14th IEEE International Conference on Network Protocols, ICNP 2006 - Santa Barbara, CA, United States
Duration: Nov 12 2006Nov 15 2006

Publication series

NameProceedings - International Conference on Network Protocols, ICNP
ISSN (Print)1092-1648

Other

Other14th IEEE International Conference on Network Protocols, ICNP 2006
Country/TerritoryUnited States
CitySanta Barbara, CA
Period11/12/0611/15/06

Fingerprint

Dive into the research topics of 'Vault: A secure binding service'. Together they form a unique fingerprint.

Cite this