KRB-CCN: Lightweight Authentication & Access Control for Private Content-Centric Networks
Ivan O. Nunes, Gene Tsudik

TL;DR
KRB-CCN introduces a lightweight, Kerberos-inspired access control system for private Content-Centric Networks, enhancing security and privacy while reducing computational overhead and offloading authorization from content producers.
Contribution
It presents a novel authorization framework for CCN that preserves consumer privacy and minimizes producer overhead by leveraging dedicated authentication and authorization authorities.
Findings
KRB-CCN effectively preserves consumer privacy.
It reduces producer computational overhead.
The system maintains content confidentiality and access control.
Abstract
Content-Centric Networking (CCN) is an internetworking paradigm that offers an alternative to today's IP-based Internet Architecture. Instead of focusing on hosts and their locations, CCN emphasizes addressable named content. By decoupling content from its location, CCN allows opportunistic in-network content caching, thus enabling better network utilization, at least for scalable content distribution. However, in order to be considered seriously, CCN must support basic security services, including content authenticity, integrity, confidentiality, authorization and access control. Current approaches rely on content producers to perform authorization and access control. This general approach has several disadvantages. First, consumer privacy vis-a-vis producers is not preserved. Second, identity management and access control impose high computational overhead on producers. Also,…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Code & Models
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCaching and Content Delivery · Advanced Authentication Protocols Security · Cryptography and Data Security
