89 research outputs found

    Navegar seguro por Internet

    Get PDF
    Peer Reviewe

    Implementacion de Ipsec en una arquitectura TCP splitting

    Get PDF
    El rendimiento de las aplicaciones que utilizan el protocolo de transporte TCP (Transmission Control Protocol) sobre enlaces vía satélite tiene una degradación significativa. Esto se debe principalmente a que el algoritmo de control de congestión estándar de TCP no es adecuado para superar las deficiencias de las redes satelitales. TCP splitting es una solución prometedora para mejorar el rendimiento general de TCP, incluso en el segmento satelital. La división de la conexión TCP se logra mediante la instalación de dos PEPs (Performance Enhancement Proxies) en los extremos del segmento satelital. Sin embargo, la división de TCP entra en conflicto con IPsec. Si el cifrado y/o la autenticación son aplicados sobre los datagramas IP, el PEP no puede manipular las correspondientes cabeceras IP y TCP para dividir las conexiones TCP. En este trabajo presentamos tres propuestas para implementar IPsec en un escenario TCP splitting, proporcionando los servicios de seguridad habituales y un buen rendimiento en la conexión vía satélite. La idea básica es permitir a los PEPs manipular las cabeceras IP y TCP en función del nivel de confianza que los usuarios tengan en ellos.Peer ReviewedPostprint (published version

    Mission analysis of nanosatellite constellations with OpenSatKit

    Get PDF
    CubeSat reliability is still considered an obstacle due to the sizeable fail rates generally attributed to the dead-on-arrival cases and early subsystem malfunctions. Thus, as CubeSats' primary purpose moves from technological demonstrations and university projects to missions where a significant risk of failure is not acceptable, an inexpensive method to emulate low Earth orbit constellations is being researched. The results presented have been developed in the framework of the PLATHON research project, which intends to develop a hardware-in-the-loop emulation platform for nanosatellite constellations with optical inter-satellite communication and ground-to-satellite links. Consequently, a crucial aspect of this project is to have a sufficiently precise orbital propagator with real-time manoeuvring control and graphical representation. NASA's OpenSatKit, a multi-faceted open-source platform with an inbuilt propagator known as 42, has been chosen to analyse the programme's feasibility in order to create a constellation testing bench. As an initial development of a software-in-the-loop application, the pre- processing of files has been automated; enhanced Attitude Determination and Control System manoeuvres have been added and configured through bidirectional socket interfaces, and the results format has been modified to be easily post-processed with MATLAB and Simulin

    Impact of the revocation service in PKI prices

    No full text
    The ability to communicate securely is needed for many network applications. Public key infrastructure (PKI) is the most extended solution to verify and confirm the identity of each party involved in any secure transaction and transfer trust over the network. One of the hardest tasks of a certification infrastructure is to manage revocation. Research on this topic has focused on the trade-offs that different revocation mechanisms offer. However, less effort has been paid to understand the benefits of improving the revocation policies. In this paper, we analyze the behavior of the oligopoly of certificate providers that issue digital certificates to clients facing identical independent risks. We found the prices in the equilibrium, and we proof that certificate providers that offer better revocation information are able to impose higher prices to their certificates without sacrificing market share in favor of the other oligarchs. In addition, we show that our model is able to explain the actual tendency of the SSL market where providers with worst QoS are suffering loses.Postprint (published version
    • …
    corecore