martinduke / draft-duke-quic-load-balancers

An internet draft to standardize the way that QUIC servers and load balancers can support routable, unlinkable connection IDs
Other
2 stars 4 forks source link

Attacks on Single Server? #18

Closed martinduke closed 6 years ago

martinduke commented 6 years ago

There is some disagreements as to whether given attackers the ability to attack a single server would be a feature or a bug. Kazuho suggested that he wants to use QUIC-LB for this, and that he doesn't see the linkability issue as serious.

Blocking these attacks is (in my opinion) a nice side effect of the privacy goal, but we haven't explicitly considered it in the design. Should it be a formal objective of the draft?

I filed this issue so that others could register their feelings on this point.

dtikhonov commented 6 years ago

The answer to this question will affect the viability of the PCID protocol. Is this why it is being asked?

Kazuho suggested that he wants to use QUIC-LB for this [...]

I did not get this part: what is this?

nibanks commented 6 years ago

I do think we should at least enumerate what we think the possible attacks in the document.

martinduke commented 6 years ago

@dtikhonov Sorry, Kazuho's intent for using QUIC-LB is to frustrate attacks on a single server.

martinduke commented 6 years ago

consensus in Bangkok was to mention it in the draft without passing judgment as to whether these attacks are important. This needs a PR.