浏览全部资源
扫码关注微信
1. 华为技术有限公司,北京 100094
2. 中国互联网络信息中心,北京 100190
[ "刘冰洋(1985- ),男,博士,华为技术有限公司主任工程师,主要从事网络技术方面研究工作,包括互联网体系结构、网络协议、安全可信、服务质量等。" ]
[ "杨飞(1975- ),男,博士,华为技术有限公司主任工程师,主要从事网络技术方面研究工作。" ]
[ "任首首(1988- ),男,博士,华为技术有限公司高级工程师,主要从事网络技术方面研究工作。" ]
[ "魏鑫鹏(1986- ),男,华为技术有限公司高级工程师,主要从事网络技术方面研究工作。" ]
[ "杨雪(1980- ),女,华为技术有限公司高级工程师,主要从事网络技术方面研究工作。" ]
[ "王闯(1975- ),男,华为技术有限公司高级技术专家,主要从事网络技术方面研究工作。" ]
[ "延志伟(1985- ),男,博士,中国互联网络信息中心基础技术实验室副主任、研究员,主要从事互联网名址路由关键技术及下一代网络架构方面的研究工作。" ]
网络出版日期:2019-08,
纸质出版日期:2019-08-20
移动端阅览
刘冰洋, 杨飞, 任首首, 等. 去中心化互联网基础设施[J]. 电信科学, 2019,35(8):74-87.
Bingyang LIU, Fei YANG, Shoushou REN, et al. Decentralized internet infrastructure[J]. Telecommunications science, 2019, 35(8): 74-87.
刘冰洋, 杨飞, 任首首, 等. 去中心化互联网基础设施[J]. 电信科学, 2019,35(8):74-87. DOI: 10.11959/j.issn.1000-0801.2019200.
Bingyang LIU, Fei YANG, Shoushou REN, et al. Decentralized internet infrastructure[J]. Telecommunications science, 2019, 35(8): 74-87. DOI: 10.11959/j.issn.1000-0801.2019200.
域间路由系统、域名系统和公钥基础设施等是互联网重要的基础设施,它们是互联网的网络连通性、服务可用性和通信可信性的基础。然而,这些基础设施或其背后的可信模型是中心化的,存在着中心节点权限过大、单点失效等脆弱性,降低了互联网的安全性、可靠性和平等性。为了构建一个更加安全、可靠、平等和开放的互联网,尝试提出了去中心化的互联网基础设施(decentralized internet infrastructure,DII),并讨论其体系结构和各层的设计,分析系统的可行性。DII架构包含3个层次:底层利用分布式账本技术构建基础的去中心化能力;中间层构建IP地址和域名等互联网名字空间的去中心化可信管理机制,并支持安全可信的域间路由和域名映射系统;顶层为开放的应用层,支持和促进创新、可信的去中心化互联网应用。
Inter-domain routing system
domain name system (DNS) and public key infrastructure (PKI) are the fundamental infrastructures of the internet.These infrastructures help to provide network connectivity
service availability and communication trusts between different internet entities.However
these infrastructures are all designed based on a centralized system architecture or a trusted model
which suffers from many vulnerabilities.An architecture called decentralized internet infrastructure (DII) based on decentralization techniques was proposed.The DII architecture consists of three layers.The underlying layer was the distributed ledger layer
providing decentralized trusted foundation for DII.The intermediate layer
called name space management layer
fulfills the management of internet core resources (such as IP addresses
AS numbers and domain names) and provides trustworthy mapping information between different resources.The top layer was an open application layer that could support trustworthy decentralized internet applications.
HEILMAN E , COOPER D , REYZIN L , et al . From the consent of the routed:improving the transparency of the RPKI [C ] // ACM SIGCOMM Computer Communication Review,August 17 - 22,2014,Chicago,Illinois,USA . New York:ACM Press , 2014 , 44 ( 4 ): 51 - 62 .
VANCE A . WikiLeaks struggles to stay online after attacks [EB ] . 2010 .
ZETTER K . DigiNotar files for bankruptcy in wake of devastating hack [EB ] . 2011 .
NAKAMOTO S . Bitcoin:a peer-to-peer electronic cash system [EB ] . 2008 .
WOOD C . Ethereum:a secure decentralised generalised transaction ledger eip-150 revision [EB ] . 2017 .
CACHIN C , . Architecture of the hyperledger blockchain fabric [C ] // Workshop on Distributed Cryptocurrencies and Consensus Ledgers,July 25,2016.[S.l.:s.n] . 2016 .
IETF . Problem definition and classification of bgp route leaks:7908 [S ] . 2016 .
LIETF . An infrastructure to support secure internet routing:6480 [S ] . 2012 .
IETF . The stellar consensus protocol (SCP):raft-mazieres-dinrgscp-05 [S ] . 2018 .
IETF . Delegated distributed mappings:draft-wastom-dinrgdelmap-01 [S ] . 2018 .
AW N . Decentralized Identity – what lies ahead of Us:the open (Interesting) research issues [EB ] . 2018 .
Cloundflare . Cloudflare cirrus [EB ] . 2018 .
IETF . An analysis of the applicability of block chain to secure ip address allocation,delegation and bindings:draft-paillissesidrops-blockchain-01 [S ] . 2017 .
ANGIERI S , GARCÍA-MARTÍNEZ A , LIU B , et al . An experiment in distributed Internet address management using blockchains [J ] . arXiv:1807.10528 , 2018 .
KALODNER H A , CARLSTENA M , ELLENBOGEN P , et al . An empirical study of name coin and lessons for decentralized namespace Design [C ] // WEIS,June 2015,Delft Netherlands.[S.l.:s.n] . 2015 .
ALI M , NELSON J , SHEA R , et al . Blockstack:a global naming and storage system secured by blockchains [C ] // 2016{USENIX} Annual Technical Conference,June 22-24,2016,Denver,USA.[S.l.:s.n] . 2016 : 181 - 194 .
Ethereum . Ethereum Name Service [EB ] . 2018 .
IETF . Certificate transparency:6962 [S ] . 2013 .
0
浏览量
1171
下载量
0
CSCD
关联资源
相关文章
相关作者
相关机构