On the Interplay between TLS Certificates and QUIC Performance

Publikation: Beitrag in Buch/Konferenzbericht/Sammelband/GutachtenBeitrag in KonferenzbandBeigetragenBegutachtung

Beitragende

Abstract

In this paper, we revisit the performance of the QUIC connection setup and relate the design choices for fast and secure connections to common Web deployments. We analyze over 1M Web domains with 272k QUIC-enabled services and find two worrying results. First, current practices of creating, providing, and fetching Web certificates undermine reduced round trip times during the connection setup since sizes of 35% of server certificates exceed the amplification limit. Second, non-standard server implementations lead to larger amplification factors than QUIC permits, which increase even further in IP spoofing scenarios. We present guidance for all involved stakeholders to improve the situation.

Details

OriginalspracheEnglisch
TitelProceedings of ACM CoNEXT 2022
Herausgeber (Verlag)ACM New York, NY, USA
Seiten204-213
Seitenumfang10
PublikationsstatusVeröffentlicht - 30 Nov. 2022
Peer-Review-StatusJa

Externe IDs

Scopus 85144816543
ORCID /0000-0002-3825-2807/work/142241889

Schlagworte

Forschungsprofillinien der TU Dresden

Fächergruppen, Lehr- und Forschungsbereiche, Fachgebiete nach Destatis

Ziele für nachhaltige Entwicklung