Building a distributed authenticating CDN

Sam Moffatt
{"title":"Building a distributed authenticating CDN","authors":"Sam Moffatt","doi":"10.1109/ICDKE.2011.6053930","DOIUrl":null,"url":null,"abstract":"In recent times, much has been made of the security, or lack thereof, utilised within Facebook's content distribution network (CDN). Their CDN is noted to enable public access to any resource via a GET request presuming the user knows the URL for the resource. This means that not only can users directly access material that they would otherwise not have access to but it also means that material that has been considered “deleted” may still be accessible. noncdn is a content distribution network designed to provide light-weight authenticated access to content stored at edge nodes with easily replicated authentication access through time limited authentication tokens. noncdn provides “volumes” as a container for handling access control and authentication nodes for generation and validation of authentication tokens. As tokens identify individuals, accesses can be logged and tracked to provide extra auditing functionality.","PeriodicalId":377148,"journal":{"name":"2011 International Conference on Data and Knowledge Engineering (ICDKE)","volume":"47 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2011-10-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2011 International Conference on Data and Knowledge Engineering (ICDKE)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICDKE.2011.6053930","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

In recent times, much has been made of the security, or lack thereof, utilised within Facebook's content distribution network (CDN). Their CDN is noted to enable public access to any resource via a GET request presuming the user knows the URL for the resource. This means that not only can users directly access material that they would otherwise not have access to but it also means that material that has been considered “deleted” may still be accessible. noncdn is a content distribution network designed to provide light-weight authenticated access to content stored at edge nodes with easily replicated authentication access through time limited authentication tokens. noncdn provides “volumes” as a container for handling access control and authentication nodes for generation and validation of authentication tokens. As tokens identify individuals, accesses can be logged and tracked to provide extra auditing functionality.
构建分布式认证CDN
最近,Facebook的内容分发网络(CDN)的安全性(或缺乏安全性)备受关注。它们的CDN被注意到允许通过GET请求对任何资源进行公共访问,假设用户知道资源的URL。这意味着用户不仅可以直接访问他们原本无法访问的材料,而且还意味着已被认为“删除”的材料可能仍然可以访问。Noncdn是一个内容分发网络,旨在为存储在边缘节点的内容提供轻量级的身份验证访问,并通过有时间限制的身份验证令牌轻松复制身份验证访问。Noncdn提供“卷”作为容器,用于处理访问控制和身份验证节点,以生成和验证身份验证令牌。由于令牌可以标识个人,因此可以记录和跟踪访问,以提供额外的审计功能。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信