90 likes | 171 Views
Explore challenges in network connectivity, access control, and service discovery for secure home networking. Address scalability, security, and usability while considering non-technical factors. Discuss early methods like address-based and name-based systems, DNS, DHCP, and the evolution of technologies like Zeroconf and UPnP. Delve into wireless security solutions and phone network authentication methods. Draw parallels with real-world analogues like postal addresses and local identity issuers.
E N D
Service discovery and configuration CSE481M: Home Networking Capstone April 27, 2011
Problems • How do you get network connectivity (securely)? • How does the network know that you should be allowed to connect? • How do you find other services of interest (securely)? • How do the services know that you are a permitted client?
Fundamental tension Scalability Security Usability Non-technical factors: Implementation cost and competition among companies
The early days MIT Address-based, manual Name-based, manual DNS DHCP UCLA
What if there is no DHCP/DNS servers?How do we find network services? • Zeroconf • Automatic address allocation • Automatic name resolution • Automatic service discovery • Apple Bonjour • Microsoft UPnP
Open problems / rough edges Design: Going across subnets Implementation: Incompleteness and incompatibility
Then came wireless • Decouples physical security from network security • Need mutual authentication and secure communication • No eavesdropping or packet injection • Options: • Out of band secrets (WiFi today) • Blind pairing (Z-Wave) • Pairing with secrets (Bluetooth) • Proximity-based security (Network-in-a-box, Z-Wave)
How does the phone network do it? • Landlines • Provider-based addressing • Name or service lookup: 411 or out-of-band • Access controlled through physical access • Cellular phones • Centrally administered and over-the-air programming
Real-world analogues • Snail mail (postal) addresses • Top-down scoped allocation (variable #bits) • Name and service lookup is out of band • No access restrictions • Buying alcohol • Local identity issuers and federation