Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RFC: mechanisms for anonymizing distributed search |
|---|---|
| Date: | 23 Mar 2005 20:57:02 -0000 |
Realtime search can be accomplished in a distributed setting by broadcasting a search request through a mesh network so that it is processed by all nodes in a particular neighborhood of the network. Various deterministic mechanisms can be used to control the scope of the broadcast (such as TTLs or utility counters). These mechanisms work well to achieve a limited exponential blow-up: they quickly deliver a message to a large collection of nodes while also ensuring that a message does not affect the entire network. In a setting where the anonymity of searchers and result-senders is important, these deterministic limiting mechanisms give attackers too much information about how far a search has traveled and too much control over how much farther it will go. I have been developing mechanisms that work in conjunction with deterministic limiters to make search anonymous. Recently, new attacks involving coordinated neighbor nodes were discovered, and I have updated my mechanisms to deal with these attacks. The document describing these mechanisms is here: http://mute-net.sf.net/utilityCounters.shtml The discussion of security- and anonymity-related issues starts in section 9. New materal that deals with multi-neighbor attacks starts in section 10.1 Part of the document's focus is on utility counters, an alternative limiting mechanism that is more scalable than TTLs. However, the anonymizing mechanisms will work just as well with more traditional TTL schemes. Also, as shown in section 10.4, utility counters are not compatible with anonymity goals, though they would be a great improvement over TTLs in a system where anonymity is not important. Comments are requested, Jason Rohrer -- http://jasonrohrer.n3.net
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Wireless Keyboard Security, Kinnell |
|---|---|
| Next by Date: | Re: GIAC Dilution, Aman Raheja |
| Previous by Thread: | SUDO vs root account question, Tahis Vera |
| Next by Thread: | SF new column announcement: Owning A New Phone, Kelly Martin |
| Indexes: | [Date] [Thread] [Top] [All Lists] |