TY - GEN
T1 - TorPolice
T2 - 25th IEEE International Conference on Network Protocols, ICNP 2017
AU - Liu, Zhuotao
AU - Liu, Yushan
AU - Winter, Philipp
AU - Mittal, Prateek
AU - Hu, Yih Chun
N1 - Publisher Copyright:
© 2017 IEEE.
PY - 2017/11/21
Y1 - 2017/11/21
N2 - Tor is the most widely used anonymity network, currently serving millions of users each day. However, there is no access control in place for all these users, leaving the network vulnerable to botnet abuse and attacks. For example, criminals frequently use exit relays as stepping stones for attacks, causing service providers to serve CAPTCHAs to exit relay IP addresses or blacklisting them altogether, which leads to severe usability issues for legitimate Tor users. To address this problem, we propose TorPolice, the first privacy-preserving access control framework for Tor. TorPolice enables abuse-plagued service providers such as Yelp to enforce access rules to police and throttle malicious requests coming from Tor while still providing service to legitimate Tor users. Further, TorPolice equips Tor with global access control for relays, enhancing Tor's resilience to botnet abuse. We show that TorPolice preserves the privacy of Tor users, implement a prototype of TorPolice, and perform extensive evaluations to validate our design goals.
AB - Tor is the most widely used anonymity network, currently serving millions of users each day. However, there is no access control in place for all these users, leaving the network vulnerable to botnet abuse and attacks. For example, criminals frequently use exit relays as stepping stones for attacks, causing service providers to serve CAPTCHAs to exit relay IP addresses or blacklisting them altogether, which leads to severe usability issues for legitimate Tor users. To address this problem, we propose TorPolice, the first privacy-preserving access control framework for Tor. TorPolice enables abuse-plagued service providers such as Yelp to enforce access rules to police and throttle malicious requests coming from Tor while still providing service to legitimate Tor users. Further, TorPolice equips Tor with global access control for relays, enhancing Tor's resilience to botnet abuse. We show that TorPolice preserves the privacy of Tor users, implement a prototype of TorPolice, and perform extensive evaluations to validate our design goals.
UR - http://www.scopus.com/inward/record.url?scp=85041413481&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=85041413481&partnerID=8YFLogxK
U2 - 10.1109/ICNP.2017.8117564
DO - 10.1109/ICNP.2017.8117564
M3 - Conference contribution
AN - SCOPUS:85041413481
T3 - Proceedings - International Conference on Network Protocols, ICNP
BT - 2017 IEEE 25th International Conference on Network Protocols, ICNP 2017
PB - IEEE Computer Society
Y2 - 10 October 2017 through 13 October 2017
ER -