DocumentCode :
1682207
Title :
The design of a versatile, secure P2PSIP communications architecture for the public internet
Author :
Bryan, David A. ; Lowekamp, Bruce B. ; Zangrilli, Marcia
Author_Institution :
Coll. of William & Mary/SlPeerior Technol. Inc., Williamsburg, VA
fYear :
2008
Firstpage :
1
Lastpage :
8
Abstract :
Communications systems, encompassing VoIP, IM, and other personal media, present different challenges for P2P environments than other P2P applications. In particular, reliable communication implies that each resource (person) is unique and must be reliably located, without false negatives. Because of their prevalence in real deployments, the overlay must use endpoints behind NATs as peers and must be resilient against DoS attacks that attempt to disrupt the system´s routing properties or DoS a particular person. We have designed and implemented a P2P communications system that addresses these issues, now deployed as both a commercial and academic project, which has resulted in a leading proposal for a P2PSIP standard in the IETF. We present the design tradeoffs necessary to meet the requirements of a reliable communications system and provide guidance on appropriate choices for designers of other similar systems in the future. In particular, the practical issues of non-transitive routing, NAT traversal required by our endpoints, and the prevention of DoS attacks have proven to be more critical than strict performance metrics in selecting DHT identifiers, topology, and routing algorithms. Where a central authority exists, certificates can be stored in the overlay and allow more efficient DHT algorithms to be used. We explain how security and routing schemes can help preserve the integrity, scalability, and performance of P2PSIP communication Systems.
Keywords :
Internet; peer-to-peer computing; systems analysis; DHT algorithms; DoS attacks; IM; NAT traversal; VoIP; communications systems; nontransitive routing; public Internet; secure P2PSIP communications architecture; Communication standards; Communication system security; Computer crime; Internet; Measurement; Network address translation; Proposals; Routing; Scalability; Topology;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Parallel and Distributed Processing, 2008. IPDPS 2008. IEEE International Symposium on
Conference_Location :
Miami, FL
ISSN :
1530-2075
Print_ISBN :
978-1-4244-1693-6
Electronic_ISBN :
1530-2075
Type :
conf
DOI :
10.1109/IPDPS.2008.4536200
Filename :
4536200
Link To Document :
بازگشت