Aviso: para depositar documentos, por favor, inicia sesión e identifícate con tu cuenta de correo institucional de la UCM con el botón MI CUENTA UCM. No emplees la opción AUTENTICACIÓN CON CONTRASEÑA
 

Integrating Post-Quantum Cryptography Plugins for IPsec Offloads to Data Processing Units in the Cloud-Edge Continuum

dc.conference.date28-31 Oct 2024
dc.conference.placeCharleroi, Bélgica
dc.conference.title2024 IEEE 32nd International Conference on Network Protocols (ICNP)
dc.contributor.authorCano Aguilera, Abraham
dc.contributor.authorRubio García, Carlos
dc.contributor.authorFrantz, Raphaël
dc.contributor.authorTafur Monroy, Idelfonso
dc.contributor.authorImaña Pascual, José Luis
dc.contributor.authorVegas Olmos, Juan José
dc.date.accessioned2025-02-20T09:07:08Z
dc.date.available2025-02-20T09:07:08Z
dc.date.issued2024-10
dc.descriptionSe deposita la versión final o aceptada del artículo (postprint)
dc.description.abstractThe imminent advent of Quantum Computers poses a significant threat to the cryptographic algorithms supporting the public key infrastructure (PKI) of widely used communication protocols. High Performance Computing (HPC) data centers among other interested parties are well aware of the catastrophic consequences quantum attacks could have on their PKI and are consequently transitioning to Post-Quantum Cryptographic (PQC) methods, despite the substantial overhead this introduces for handling incoming network packets. This work addresses the transition to PQC within the context of the Cloud-Edge Continuum by integrating the Open Quantum Safe (OQS) library into the accelerated strongSwan developed by Mellanox for Data Processing Units (DPUs). This integration offloads cryptographic operations from central servers to data DPUs distributed across the cloud-edge continuum. Our solution ensures quantum security by providing PQ authentication through CRYSTALS-Dilithium or CRYSTALS-FALCON, PQ key exchanges via CRYSTALS-Kyber, and confidential data transmission using AES-256. Additionally, the deployment of this implementation on DPUs helps reduce the computational load on both HPC data centers and edge devices, promoting more efficient and secure operations across the entire cloud-edge continuum.
dc.description.agreementEuropean Commission Marie Skłodowska-Curie 101073355
dc.description.departmentDepto. de Arquitectura de Computadores y Automática
dc.description.facultyFac. de Ciencias Físicas
dc.description.refereedTRUE
dc.description.sponsorshipMinisterio de Ciencia, Innovación y Universidades (España)
dc.description.sponsorshipAgencia Estatal de Investigación (España)
dc.description.sponsorshipEuropean Commission
dc.description.statuspub
dc.identifier.citationA. Cano, C. R. Garcia, R. Frantz, I. T. Monroy, J. L. Imaña and J. J. Vegas, "Integrating Post-Quantum Cryptography Plugins for IPsec Offloads to Data Processing Units in the Cloud-Edge Continuum," 2024 IEEE 32nd International Conference on Network Protocols (ICNP), Charleroi, Belgium, 2024, pp. 1-6, doi: 10.1109/ICNP61940.2024.10858568. keywords: {Resistance;Data centers;Quantum computing;Protocols;Public key;Throughput;Data processing;Libraries;Cryptography;Servers;Quantum-resistant cryptography;Cloud-Edge Continuum;network offloads;data processing units;PQ crytography;public key infrastructure},
dc.identifier.doi10.1109/ICNP61940.2024.10858568
dc.identifier.essn1558-2256
dc.identifier.isbn979-8-3503-5171-2
dc.identifier.issn0018-9219
dc.identifier.officialurlhttps://doi.org/10.1109/ICNP61940.2024.10858568
dc.identifier.relatedurlhttps://ieeexplore.ieee.org/document/10858568
dc.identifier.urihttps://hdl.handle.net/20.500.14352/118243
dc.language.isoeng
dc.page.final10858568-6
dc.page.initial10858568-1
dc.relation.projectIDinfo:eu-repo/grantAgreement/AEI/Plan Estatal de Investigación Científica y Técnica y de Innovación 2021-2023/ PID2021-123041OB-I00 /ES/ESPECIALIZACIÓN DE LA ARQUITECTURA DESDE LAS PERSPECTIVAS ARITMÉTICA Y DE MEMORIA/
dc.rights.accessRightsrestricted access
dc.subject.cdu004
dc.subject.keywordQuantum-resistant cryptography
dc.subject.keywordCloud-Edge Continuum
dc.subject.keywordnetwork offloads
dc.subject.keyworddata processing units
dc.subject.keywordPQ crytography
dc.subject.keywordpublic key infrastructure
dc.subject.ucmInformática (Informática)
dc.subject.unesco3304 Tecnología de Los Ordenadores
dc.titleIntegrating Post-Quantum Cryptography Plugins for IPsec Offloads to Data Processing Units in the Cloud-Edge Continuum
dc.typeconference paper
dc.type.hasVersionAM
dspace.entity.typePublication
relation.isAuthorOfPublication1c42e591-4b3d-4cb4-919d-01813fa4cd36
relation.isAuthorOfPublication.latestForDiscovery1c42e591-4b3d-4cb4-919d-01813fa4cd36

Download

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
cec24-final3.pdf
Size:
1.12 MB
Format:
Adobe Portable Document Format