CertRevoke: A Certificate Revocation Framework for Named Data Networking

Tianyuan Yu, Hongcheng Xie, Siqi Liu, Xinyu Ma, Xiaohua Jia, Lixia Zhang

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

6 Citations (Scopus)

Abstract

Named Data Networking (NDN) secures network communications by requiring all data packets to be signed upon production. This requirement makes usable and efficient NDN certificate issuance and revocation essential for NDN operations. In this paper, we first investigate and clarify core concepts related to NDN certificate revocation, then proceed with the design of CertRevoke, an NDN certificate revocation framework. CertRevoke utilizes naming conventions and trust schema to ensure certificate owners and issuers legitimately produce in-network cacheable records for revoked certificates. We evaluate the security properties and performance of CertRevoke through case studies. Our results show that deploying CertRevoke in an operational NDN network is feasible.
Original languageEnglish
Title of host publicationICN '22 - Proceedings of the 2022 9th ACM Conference on Information-Centric Networking
Place of PublicationNew York
PublisherAssociation for Computing Machinery
Pages80-90
Number of pages11
ISBN (Print)9781450392570
DOIs
Publication statusPublished - 2022
Event9th ACM Conference on Information-Centric Networking (ACM ICN 2022) - Osaka, Japan
Duration: 19 Sept 202221 Sept 2022
https://conferences2.sigcomm.org/acm-icn/2022/

Publication series

NameICN - Proceedings of the ACM Conference on Information-Centric Networking

Conference

Conference9th ACM Conference on Information-Centric Networking (ACM ICN 2022)
Abbreviated titleICN '22
PlaceJapan
CityOsaka
Period19/09/2221/09/22
Internet address

Bibliographical note

Research Unit(s) information for this publication is provided by the author(s) concerned.

Funding

We want to thank all the anonymous reviewers and the shepherd Nikos Fotiou for their valuable comments. This work was supported in part by National Science Foundation under awards 2019085 and 2126148, and Research Grants Council of Hong Kong under CityU 11202419.

Research Keywords

  • certificate revocations
  • information-centric networking
  • named data networking
  • trust management

RGC Funding Information

  • RGC-funded

Fingerprint

Dive into the research topics of 'CertRevoke: A Certificate Revocation Framework for Named Data Networking'. Together they form a unique fingerprint.

Cite this