{"title":"端到端隐私的身份和位置与IP","authors":"S. Bhatti, Gregor Haywood, Ryo Yanagida","doi":"10.1109/ICNP52444.2021.9651909","DOIUrl":null,"url":null,"abstract":"We describe protocol features to provide both Identity Privacy and Location Privacy at the network layer that are truly end-to-end, strengthening the trust model by constraining the boundary of trust to only the communicating parties. We show that Identity Privacy and Location Privacy can be provided by changing only the addressing model, whilst still remaining compatible with IPv6. Using the Identifier-Locator Network Protocol (ILNP), it is possible to use ephemeral end-system ILNP Node Identity (NID) values to improve identity privacy. Using the ILNP Locator values with dynamic bindings, it is possible to use multiple IPv6 routing prefixes as network Locator (L64) values to provide (topological) location privacy. This is achieved: (a) whilst maintaining end-to-end state for transport protocols, without proxies, tunnels, or gateways at the transport layer or application layer; and (b) without the use of cryptographic techniques, so performance is not impacted.","PeriodicalId":343813,"journal":{"name":"2021 IEEE 29th International Conference on Network Protocols (ICNP)","volume":"322 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"End-to-End Privacy for Identity & Location with IP\",\"authors\":\"S. Bhatti, Gregor Haywood, Ryo Yanagida\",\"doi\":\"10.1109/ICNP52444.2021.9651909\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"We describe protocol features to provide both Identity Privacy and Location Privacy at the network layer that are truly end-to-end, strengthening the trust model by constraining the boundary of trust to only the communicating parties. We show that Identity Privacy and Location Privacy can be provided by changing only the addressing model, whilst still remaining compatible with IPv6. Using the Identifier-Locator Network Protocol (ILNP), it is possible to use ephemeral end-system ILNP Node Identity (NID) values to improve identity privacy. Using the ILNP Locator values with dynamic bindings, it is possible to use multiple IPv6 routing prefixes as network Locator (L64) values to provide (topological) location privacy. This is achieved: (a) whilst maintaining end-to-end state for transport protocols, without proxies, tunnels, or gateways at the transport layer or application layer; and (b) without the use of cryptographic techniques, so performance is not impacted.\",\"PeriodicalId\":343813,\"journal\":{\"name\":\"2021 IEEE 29th International Conference on Network Protocols (ICNP)\",\"volume\":\"322 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-11-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 IEEE 29th International Conference on Network Protocols (ICNP)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICNP52444.2021.9651909\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE 29th International Conference on Network Protocols (ICNP)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICNP52444.2021.9651909","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
End-to-End Privacy for Identity & Location with IP
We describe protocol features to provide both Identity Privacy and Location Privacy at the network layer that are truly end-to-end, strengthening the trust model by constraining the boundary of trust to only the communicating parties. We show that Identity Privacy and Location Privacy can be provided by changing only the addressing model, whilst still remaining compatible with IPv6. Using the Identifier-Locator Network Protocol (ILNP), it is possible to use ephemeral end-system ILNP Node Identity (NID) values to improve identity privacy. Using the ILNP Locator values with dynamic bindings, it is possible to use multiple IPv6 routing prefixes as network Locator (L64) values to provide (topological) location privacy. This is achieved: (a) whilst maintaining end-to-end state for transport protocols, without proxies, tunnels, or gateways at the transport layer or application layer; and (b) without the use of cryptographic techniques, so performance is not impacted.