Skip to main content

Showing 1–12 of 12 results for author: Zirngibl, J

.
  1. arXiv:2405.09264  [pdf, other

    cs.NI cs.CR

    A Quantum of QUIC: Dissecting Cryptography with Post-Quantum Insights

    Authors: Marcel Kempf, Nikolas Gauder, Benedikt Jaeger, Johannes Zirngibl, Georg Carle

    Abstract: QUIC is a new network protocol standardized in 2021. It was designed to replace the TCP/TLS stack and is based on UDP. The most current web standard HTTP/3 is specifically designed to use QUIC as transport protocol. QUIC claims to provide secure and fast transport with low-latency connection establishment, flow and congestion control, reliable delivery, and stream multiplexing. To achieve the secu… ▽ More

    Submitted 15 May, 2024; originally announced May 2024.

    Comments: Presented at the 2024 IFIP Networking Conference (IFIP Networking)

  2. Packed to the Brim: Investigating the Impact of Highly Responsive Prefixes on Internet-wide Measurement Campaigns

    Authors: Patrick Sattler, Johannes Zirngibl, Mattijs Jonker, Oliver Gasser, Georg Carle, Ralph Holz

    Abstract: Internet-wide scans are an important tool to evaluate the deployment of services. To enable large-scale application layer scans, a fast, stateless port scan (e.g., using ZMap) is often performed ahead of time to collect responsive targets. It is a common expectation that port scans on the entire IPv4 address space provide a relatively unbiased view as they cover the complete address space. Previou… ▽ More

    Submitted 25 October, 2023; originally announced October 2023.

  3. QUIC on the Highway: Evaluating Performance on High-rate Links

    Authors: Benedikt Jaeger, Johannes Zirngibl, Marcel Kempf, Kevin Ploch, Georg Carle

    Abstract: QUIC is a new protocol standardized in 2021 designed to improve on the widely used TCP / TLS stack. The main goal is to speed up web traffic via HTTP, but it is also used in other areas like tunneling. Based on UDP it offers features like reliable in-order delivery, flow and congestion control, streambased multiplexing, and always-on encryption using TLS 1.3. Other than with TCP, QUIC implements a… ▽ More

    Submitted 28 September, 2023; originally announced September 2023.

    Comments: Presented at the 2023 IFIP Networking Conference (IFIP Networking)

  4. Evaluating the Benefits: Quantifying the Effects of TCP Options, QUIC, and CDNs on Throughput

    Authors: Simon Bauer, Patrick Sattler, Johannes Zirngibl, Christoph Schwarzenberg, Georg Carle

    Abstract: To keep up with increasing demands on quality of experience, assessing and understanding the performance of network connections is crucial for web service providers. While different measures, like TCP options, alternative transport layer protocols like QUIC, or the hosting of services in CDNs, are expected to improve connection performance, no studies are quantifying such impacts on connections on… ▽ More

    Submitted 19 September, 2023; originally announced September 2023.

    Comments: Presented at the ACM/IRTF Applied Networking Research Workshop 2023 (ANRW23)

  5. A First Look at SVCB and HTTPS DNS Resource Records in the Wild

    Authors: Johannes Zirngibl, Patrick Sattler, Georg Carle

    Abstract: The Internet Engineering Task Force is standardizing new DNS resource records, namely SVCB and HTTPS. Both records inform clients about endpoint and service properties such as supported application layer protocols, IP address hints or Encrypted Client Hello (ECH) information. Therefore, they allow clients to reduce required DNS queries and potential retries during connection establishment and thus… ▽ More

    Submitted 19 September, 2023; originally announced September 2023.

    Comments: Presented at the 8th International Workshop on Traffic Measurements for Cybersecurity (WTMC 2023)

  6. QUIC Hunter: Finding QUIC Deployments and Identifying Server Libraries Across the Internet

    Authors: Johannes Zirngibl, Florian Gebauer, Patrick Sattler, Markus Sosnowski, Georg Carle

    Abstract: The diversity of QUIC implementations poses challenges for Internet measurements and the analysis of the QUIC ecosystem. While all implementations follow the same specification and there is general interoperability, differences in performance, functionality, but also security (e.g., due to bugs) can be expected. Therefore, knowledge about the implementation of an endpoint on the Internet can help… ▽ More

    Submitted 19 March, 2024; v1 submitted 30 August, 2023; originally announced August 2023.

    Comments: preprint

    Journal ref: Proceedings of the Passive and Active Measurement Conference 2024 (PAM '24)

  7. arXiv:2307.06872  [pdf, other

    cs.NI

    Target Acquired? Evaluating Target Generation Algorithms for IPv6

    Authors: Lion Steger, Liming Kuang, Johannes Zirngibl, Georg Carle, Oliver Gasser

    Abstract: Internet measurements are a crucial foundation of IPv6-related research. Due to the infeasibility of full address space scans for IPv6 however, those measurements rely on collections of reliably responsive, unbiased addresses, as provided e.g., by the IPv6 Hitlist service. Although used for various use cases, the hitlist provides an unfiltered list of responsive addresses, the hosts behind which c… ▽ More

    Submitted 13 July, 2023; originally announced July 2023.

    Comments: Proceedings of the Network Traffic Measurement and Analysis Conference (TMA)

  8. Rusty Clusters? Dusting an IPv6 Research Foundation

    Authors: Johannes Zirngibl, Lion Steger, Patrick Sattler, Oliver Gasser, Georg Carle

    Abstract: The long-running IPv6 Hitlist service is an important foundation for IPv6 measurement studies. It helps to overcome infeasible, complete address space scans by collecting valuable, unbiased IPv6 address candidates and regularly testing their responsiveness. However, the Internet itself is a quickly changing ecosystem that can affect longrunning services, potentially inducing biases and obscurities… ▽ More

    Submitted 19 September, 2022; originally announced September 2022.

  9. arXiv:2209.00965  [pdf, other

    cs.NI

    Waiting for QUIC: On the Opportunities of Passive Measurements to Understand QUIC Deployments

    Authors: Jonas Mücke, Marcin Nawrocki, Raphael Hiesgen, Patrick Sattler, Johannes Zirngibl, Georg Carle, Thomas C. Schmidt, Matthias Wählisch

    Abstract: In this paper, we study the potentials of passive measurements to gain advanced knowledge about QUIC deployments. By analyzing one month backscatter traffic of the /9 CAIDA network telescope, we are able to make the following observations. First, we can identify different off-net deployments of hypergiants, using packet features such as QUIC source connection IDs (SCID), packet coalescence, and pa… ▽ More

    Submitted 2 September, 2022; originally announced September 2022.

    Comments: preprint

  10. Towards a Tectonic Traffic Shift? Investigating Apple's New Relay Network

    Authors: Patrick Sattler, Juliane Aulbach, Johannes Zirngibl, Georg Carle

    Abstract: Apple recently published its first Beta of the iCloud Private Relay, a privacy protection service with promises resembling the ones of VPNs. The architecture consists of two layers (ingress and egress), operated by disjoint providers. The service is directly integrated into Apple's operating systems and therefore provides a low entry level barrier for a large user base. It seems to be set up for m… ▽ More

    Submitted 26 September, 2022; v1 submitted 5 July, 2022; originally announced July 2022.

  11. arXiv:2206.13230  [pdf, other

    cs.NI cs.CR

    Active TLS Stack Fingerprinting: Characterizing TLS Server Deployments at Scale

    Authors: Markus Sosnowski, Johannes Zirngibl, Patrick Sattler, Georg Carle, Claas Grohnfeldt, Michele Russo, Daniele Sgandurra

    Abstract: Active measurements can be used to collect server characteristics on a large scale. This kind of metadata can help discovering hidden relations and commonalities among server deployments offering new possibilities to cluster and classify them. As an example, identifying a previously-unknown cybercriminal infrastructures can be a valuable source for cyber-threat intelligence. We propose herein an a… ▽ More

    Submitted 30 August, 2023; v1 submitted 27 June, 2022; originally announced June 2022.

    Comments: Original: https://dl.ifip.org/db/conf/tma/tma2022/tma2022-paper35.pdf Additional Material: https://active-tls-fingerprinting.github.io/

    Journal ref: Proc. Network Traffic Measurement and Analysis Conference (TMA) 2022

  12. Analyzing Locality of Mobile Messaging Traffic using the MATAdOR Framework

    Authors: Quirin Scheitle, Matthias Wachs, Johannes Zirngibl, Georg Carle

    Abstract: Mobile messaging services have gained a large share in global telecommunications. Unlike conventional services like phone calls, text messages or email, they do not feature a standardized environment enabling a federated and potentially local service architecture. We present an extensive and large-scale analysis of communication patterns for four popular mobile messaging services between 28 countr… ▽ More

    Submitted 19 January, 2016; originally announced January 2016.

    Comments: To appear at Passive and Active Measurements Conference 2016