MIMIQ: Masking IPs with Migration in QUIC

Authors: 

Yashodhar Govil, Liang Wang, and Jennifer Rexford, Princeton University

Abstract: 

The emerging QUIC transport protocol offers new opportunities to protect user privacy. We present MIMIQ, a privacy-enhancing system that leverages QUIC to protect user identity and thwart traffic-analysis attacks. MIMIQ leverages QUIC's connection migration capability to change a client's IP address frequently---even \emph{within} individual connections---without disrupting ongoing transfers or changing the client's physical location. MIMIQ is readily deployable, requiring no cooperation from networks other than the trusted network where it runs. The trusted network facilitates routing of return traffic by running an address allocation server that assigns IP addresses to clients and forwarding rules to switches. By strategically choosing migration times, MIMIQ can defeat certain traffic-analysis attacks while incurring low performance overhead.

Open Access Media

USENIX is committed to Open Access to the research presented at our events. Papers and proceedings are freely available to everyone once the event begins. Any video, audio, and/or slides that are posted after the event are also free and open to everyone. Support USENIX and our commitment to Open Access.

BibTeX
@inproceedings {257164,
author = {Yashodhar Govil and Liang Wang and Jennifer Rexford},
title = {{MIMIQ}: Masking IPs with Migration in {QUIC}},
booktitle = {10th {USENIX} Workshop on Free and Open Communications on the Internet ({FOCI} 20)},
year = {2020},
url = {https://www.usenix.org/conference/foci20/presentation/govil},
publisher = {{USENIX} Association},
month = aug,
}

Presentation Video