Abstract : This paper proposes a hybrid network system (called as “Virtually Isolated Network”) that combines an existing low bandwidth isolated network and the Internet, to implement a low cost overlay network with high bandwidth and high level security (precisely, information-theoretic security), without sacrificing security of the existing isolated network. Our approach consists of two main ideas: (1) Connect an isolated network and the Internet in a proper way using 4 physical unidirectional links (also known as “Data Diode” or “Air Gap”), so that the isolated network remains physically isolated; (2) Hide a small part of ciphertext from adversary by exploiting the property of isolated network and using a secret sharing approach.
https://hal.inria.fr/hal-01954414 Contributor : Hal IfipConnect in order to contact the contributor Submitted on : Thursday, December 13, 2018 - 4:03:45 PM Last modification on : Monday, March 18, 2019 - 1:44:19 PM Long-term archiving on: : Thursday, March 14, 2019 - 4:08:27 PM
Jia Xu, Jianying Zhou. Virtually Isolated Network: A Hybrid Network to Achieve High Level Security. 32th IFIP Annual Conference on Data and Applications Security and Privacy (DBSec), Jul 2018, Bergamo, Italy. pp.299-311, ⟨10.1007/978-3-319-95729-6_19⟩. ⟨hal-01954414⟩