• DocumentCode
    3523280
  • Title

    A Novel Mechanism for Improving Performance and Security of TCP Flows over Satellite Links

  • Author

    Thanthry, N. ; Deshpande, M. ; Pendse, R.

  • Author_Institution
    Dept. of Electr. & Comput. Eng., Wichita State Univ., KS
  • fYear
    2006
  • fDate
    Oct. 2006
  • Firstpage
    197
  • Lastpage
    202
  • Abstract
    Satellite based broadband networks are gaining importance due to their distance insensitivity and high bandwidth availability. Although it is possible to transmit Internet traffic through satellite network, it has been observed that many of the IP related protocols (especially transmission control protocol) do not perform well in the satellite environment due to the high latency and variable round trip time (RTT) offered by the satellite network. Some of the researchers have suggested using performance enhancement proxies (PEP) at strategic locations to improve the transmission control protocol (TCP) performance over the satellite network. However usage of end-to-end security mechanism like IPSec affects the PEP´s functioning as the encryption mechanisms generally hide the TCP header information along with the data from intermediate nodes. While other approaches suggest either establishing multiple security associations or sacrificing end-to-end security by using less secure mechanisms like secure shell (SSL) or transport layer security (TLS), the authors of this paper propose a simpler solution for PEP and end-to-end security coexistence. The proposed solution achieves the coexistence of PEP and end-to-end security with minimal overhead as compared to the solutions proposed by other researchers. Initial analysis carried out by the authors indicates a significant overhead reduction and performance improvement in the proposed solution as compared to the other approaches
  • Keywords
    IP networks; broadband networks; satellite links; telecommunication security; transport protocols; TCP flows; end-to-end security; multiple security associations; performance enhancement proxies; satellite based broadband networks; satellite links; secure shell; transmission control protocol; transport layer security; variable round trip time; Availability; Bandwidth; Broadband communication; Communication system traffic control; Data security; IP networks; Information security; Protocols; Satellites; TCPIP; IPSec; TCP; performance enhancing proxies; satellite network;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Carnahan Conferences Security Technology, Proceedings 2006 40th Annual IEEE International
  • Conference_Location
    Lexington, KY
  • Print_ISBN
    1-4244-0174-7
  • Type

    conf

  • DOI
    10.1109/CCST.2006.313450
  • Filename
    4105337