A secure SSM architecture

G. Chaddoud1, I. Chrisment1, A. Lahmadi1
1Inria, Loria, France

Tóm tắt

The SSM model has appeared in order to overcome the problems of deployment of IP multicast. However, a real commercial deployment of SSM has to offer some security services. Our work proposes an architecture, called S-SSM, for securing the SSM model. S-SSM defines two mechanisms for access control and content protection. The first one is carried out through subscriber authentication and access permission. As for the second, it is realized through the management of a unique key, called the channel key, k/sub ch/, shared among the sender and subscribers. We have implemented a prototype of S-SSM in order to prove the feasibility and evaluate the performance of our design.

Từ khóa

#Access control #Protection #Routing #Videoconference #Permission #Prototypes #Multimedia communication #Video sharing #Data security #Authentication

Tài liệu tham khảo

10.17487/rfc2627 balenson, 1999, Key management for large dynamic groups One-way function trees and amortized initialization 10.17487/rfc2093 wong, 1998, Secure Group Communications using Key Graphs, ACM SIGCOMM'98, 10.1145/285237.285260 10.1109/ECUMN.2000.880748 10.17487/rfc2094 lahmadi, 2001, Implementation d'un Prototype du Protocole Baal he, 2001, Simple Multicast Receiver Access Control fenner, 2001, IGMP-Based Multicast Forwarding (IGMP Proxying) schneier, 1997, Cryptographie applique?e mcgrew, 1998, Key Establishment in Large Dynamic Groups Using One-Way Function Trees ballardie, 1999, Simple scalable Internet multicast rafaeli, 2002, Lkh+2 An Improvement on the Lkh+ Algorithm for Removal Operations holbrook, 1999, Ip multicast channels: Express support for large-scale single-source applications, ACM SIGCOMM, 10.1145/316194.316207 deering, 1991, Multicast routing in a datagram internetwork 10.1007/3-540-45116-1_25 cain, 2001, Internet Group Management Protocol Version 2 10.17487/rfc2117 holbrook, 2000, Source-Specific Multicast for IP ballardie, 1997, Core based trees (CBT Version 2) multicast routing 10.1109/ISCC.2001.935354 holbrook, 2001, Using IGMPv3 for Source-Specific Multicast