Anonymity Trilemma: Strong Anonymity, Low Bandwidth Overhead, Low Latency - Choose Two
Title | Anonymity Trilemma: Strong Anonymity, Low Bandwidth Overhead, Low Latency - Choose Two |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Das, D., Meiser, S., Mohammadi, E., Kate, A. |
Conference Name | 2018 IEEE Symposium on Security and Privacy (SP) |
Keywords | AC protocol nodes, AC protocols, AC systems, anonymity, anonymity trilemma, anonymous communication protocols, Bandwidth, bandwidth overhead, composability, cryptography, fundamental constraints, Human Behavior, human factors, latency overhead choices, low bandwidth overhead, low latency overhead, Metrics, nontraditional bandwidth, Petri nets, privacy, Protocols, pubcrawl, recipient anonymity, resilience, Resiliency, sender anonymity, strong anonymity, Synchronization, telecommunication security, trilemma |
Abstract | This work investigates the fundamental constraints of anonymous communication (AC) protocols. We analyze the relationship between bandwidth overhead, latency overhead, and sender anonymity or recipient anonymity against the global passive (network-level) adversary. We confirm the trilemma that an AC protocol can only achieve two out of the following three properties: strong anonymity (i.e., anonymity up to a negligible chance), low bandwidth overhead, and low latency overhead. We further study anonymity against a stronger global passive adversary that can additionally passively compromise some of the AC protocol nodes. For a given number of compromised nodes, we derive necessary constraints between bandwidth and latency overhead whose violation make it impossible for an AC protocol to achieve strong anonymity. We analyze prominent AC protocols from the literature and depict to which extent those satisfy our necessary constraints. Our fundamental necessary constraints offer a guideline not only for improving existing AC systems but also for designing novel AC protocols with non-traditional bandwidth and latency overhead choices. |
URL | https://ieeexplore.ieee.org/document/8418599 |
DOI | 10.1109/SP.2018.00011 |
Citation Key | dasAnonymityTrilemmaStrong2018 |
- low latency overhead
- trilemma
- telecommunication security
- Synchronization
- strong anonymity
- sender anonymity
- Resiliency
- resilience
- Recipient Anonymity
- pubcrawl
- Protocols
- privacy
- Petri nets
- nontraditional bandwidth
- Metrics
- AC protocol nodes
- low bandwidth overhead
- latency overhead choices
- Human Factors
- Human behavior
- fundamental constraints
- Cryptography
- composability
- bandwidth overhead
- Bandwidth
- anonymous communication protocols
- anonymity trilemma
- anonymity
- AC systems
- AC protocols