SlideShare a Scribd company logo
1 of 16
Download to read offline
Prof. Jon Crowcroft, Dr. Murray Goulden, Dr. Christian Greiffenhagen,
Heidi Howard, Prof. Derek McAuley, Dr. Richard Mortier, Dr. Milena
Radenkovic, Dr. Arjuna Sathiaseelan
Ubiquitous Access to
Public Services Online
with PAWS
"All people should be allowed to connect to and express
themselves freely on the Internet" - UN Human Rights
Council
Lowest Cost Denominator Network
Introducing a new level of basic access,
bridging the gap between no access and full
access
Offering less than best effort access to all
10 % of the UK population do not have internet
access
Aspley, Nottingham
3 month trial
One of the most
deprived areas in
the country
~1/3 without internet
access
50 new users
50 sharers
Wireless Community Networks (WCN)
Forming Co-op's where you share your WiFi
and in turn can use other's
Fon is the most popular WCN, with > 8 million
FON hotspots worldwide
This demonstrates
that people are willing
to share their internet
connection
Introducing PAWS
Public Access Wifi Service (PAWS) works with
local councils and communities to give
everyone access to basic public services
online.
Aims
● Confidentiality
● Accountability
● Ease of Use
● Priority
● Authentication
● Scalability
Ease of Use
Most home routers are provided by ISP's,
plugged in and left on default settings
Not scalable to re-configure everyone's routers
Introducing the PAWS access point, a Netgear
router running OpenWRT
Priority
We need to measure the spare network
capacity available to each PAWS access point
Project BISmark by Georgia Tech
3 month trial: 1 month of measurement, then 2
months of use
Throttling traffic at the PAWS access point
Authentication
User need to be able to authenticate
themselves to the PAWS network at any PAWS
box
We have a RADIUS server in Nottingham
This can be linked to the council's
authentication servers
Accountability
PAWS users need to have a separate public IP
address from the sharer. Sharers must not be
accountable for users' actions online
Using a virtual private network (VPN) to a secure
endpoint so all PAWS network traffic has the
same IP address
Use PAWS access point firewalls
to enforce use of PAWS VPN
Confidentiality
WiFi Encryption often provides weak security
Traffic passes through the sharer's home router
where it can be sniffed
We already get this fixed for free with VPN to
the user's devices
Scalability
Authentication across deployment areas
You are registered with your home area,
authentication when travelling is directed to
your home authentication server but we allow
use of the nearest VPN server
Limitations
- VPN setup on some client devices is difficult
- The most widely supported VPN is PPTP, but
its been proven insecure
- Some home routers block VPN traffic by
default
- PAWS Routers currently cost £130 each
- Single point of failure, all traffic routed though
VPN server
- Little incentive to share
Ideas for Future Work
- Two tier system, where users who are also
sharers get more bandwidth
- For users who are also sharers use their
PAWS box as the VPN endpoint instead
- VPN from PAWS AP instead of client devices,
combined with WPA Enterprise from the device
to PAWS AP
- Client apps to map coverage, automatically
connect to VPN etc..
- Implement fallback in PAWS access points
Questions & Comments
Heidi Howard
hh360@cam.ac.uk
@heidiann360
@heidi-ann

More Related Content

What's hot

DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues TelecomDWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues TelecomIDATE DigiWorld
 
Things Manchester Presentation for Leeds Digital Festival
Things Manchester Presentation for Leeds Digital FestivalThings Manchester Presentation for Leeds Digital Festival
Things Manchester Presentation for Leeds Digital FestivalOpen Data Manchester
 
Find Fiber Optics Supplies and Services Dubai
Find Fiber Optics Supplies and Services  DubaiFind Fiber Optics Supplies and Services  Dubai
Find Fiber Optics Supplies and Services DubaiVRS Technologies
 
2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Providerhazirma
 
Broadband technology wired and wireless
Broadband technology wired and wireless Broadband technology wired and wireless
Broadband technology wired and wireless DILSHAD AHMAD
 
Wireless Isp Overview
Wireless Isp OverviewWireless Isp Overview
Wireless Isp Overviewjvsihag
 
Connecting to the Internet
Connecting to the InternetConnecting to the Internet
Connecting to the InternetJuben Vidal
 

What's hot (19)

DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues TelecomDWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
 
Things Manchester Presentation for Leeds Digital Festival
Things Manchester Presentation for Leeds Digital FestivalThings Manchester Presentation for Leeds Digital Festival
Things Manchester Presentation for Leeds Digital Festival
 
Find Fiber Optics Supplies and Services Dubai
Find Fiber Optics Supplies and Services  DubaiFind Fiber Optics Supplies and Services  Dubai
Find Fiber Optics Supplies and Services Dubai
 
2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider
 
Broadband technology wired and wireless
Broadband technology wired and wireless Broadband technology wired and wireless
Broadband technology wired and wireless
 
Wavelength services
Wavelength servicesWavelength services
Wavelength services
 
Bandwidth
BandwidthBandwidth
Bandwidth
 
Isp
IspIsp
Isp
 
INCA Roadshow Taunton - David Hall - Somerset County Council - The Story so Far
INCA Roadshow Taunton - David Hall - Somerset County Council - The Story so FarINCA Roadshow Taunton - David Hall - Somerset County Council - The Story so Far
INCA Roadshow Taunton - David Hall - Somerset County Council - The Story so Far
 
Carrier Wifi
Carrier Wifi Carrier Wifi
Carrier Wifi
 
INCA Roadshow Taunton - Mike Locke - Satellite Internet
INCA Roadshow Taunton - Mike Locke - Satellite InternetINCA Roadshow Taunton - Mike Locke - Satellite Internet
INCA Roadshow Taunton - Mike Locke - Satellite Internet
 
Wireless Isp Overview
Wireless Isp OverviewWireless Isp Overview
Wireless Isp Overview
 
Isp
IspIsp
Isp
 
ISP
ISPISP
ISP
 
Connecting to the Internet
Connecting to the InternetConnecting to the Internet
Connecting to the Internet
 
Extenet License Agreement
Extenet License Agreement Extenet License Agreement
Extenet License Agreement
 
INCA Roadshow Taunton - Joe Frost - Gigaclear
INCA Roadshow Taunton -  Joe Frost - GigaclearINCA Roadshow Taunton -  Joe Frost - Gigaclear
INCA Roadshow Taunton - Joe Frost - Gigaclear
 
Final isp
Final ispFinal isp
Final isp
 
Business networking
Business networkingBusiness networking
Business networking
 

Viewers also liked

Print technology transfer a practical guide
Print   technology transfer a practical guidePrint   technology transfer a practical guide
Print technology transfer a practical guideswananda
 
8164 luyen dich_tieng_anh
8164 luyen dich_tieng_anh8164 luyen dich_tieng_anh
8164 luyen dich_tieng_anhyenlovak
 
Providing Security for Wireless Community Networks (PAWS)
Providing Security for Wireless Community Networks (PAWS)Providing Security for Wireless Community Networks (PAWS)
Providing Security for Wireless Community Networks (PAWS)Heidi Howard
 
Pyland - 3 minute intro
Pyland - 3 minute intro Pyland - 3 minute intro
Pyland - 3 minute intro Heidi Howard
 
图书馆隐性知识管理
图书馆隐性知识管理图书馆隐性知识管理
图书馆隐性知识管理ccjingjing123456
 
图书馆隐性知识管理
图书馆隐性知识管理图书馆隐性知识管理
图书馆隐性知识管理ccjingjing123456
 
Flat Stanley in London, England
Flat Stanley in London, EnglandFlat Stanley in London, England
Flat Stanley in London, Englandfronczad
 

Viewers also liked (9)

04 pas manual aplikasi sms
04 pas   manual aplikasi sms04 pas   manual aplikasi sms
04 pas manual aplikasi sms
 
Print technology transfer a practical guide
Print   technology transfer a practical guidePrint   technology transfer a practical guide
Print technology transfer a practical guide
 
Signposts
SignpostsSignposts
Signposts
 
8164 luyen dich_tieng_anh
8164 luyen dich_tieng_anh8164 luyen dich_tieng_anh
8164 luyen dich_tieng_anh
 
Providing Security for Wireless Community Networks (PAWS)
Providing Security for Wireless Community Networks (PAWS)Providing Security for Wireless Community Networks (PAWS)
Providing Security for Wireless Community Networks (PAWS)
 
Pyland - 3 minute intro
Pyland - 3 minute intro Pyland - 3 minute intro
Pyland - 3 minute intro
 
图书馆隐性知识管理
图书馆隐性知识管理图书馆隐性知识管理
图书馆隐性知识管理
 
图书馆隐性知识管理
图书馆隐性知识管理图书馆隐性知识管理
图书馆隐性知识管理
 
Flat Stanley in London, England
Flat Stanley in London, EnglandFlat Stanley in London, England
Flat Stanley in London, England
 

Similar to PAWS Architecture

Virtual Private Network
Virtual Private NetworkVirtual Private Network
Virtual Private Networkadeelahmed0345
 
csevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdfcsevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdfHirazNor
 
my presentation on vpn
my presentation on vpnmy presentation on vpn
my presentation on vpnjadeja dhanraj
 
Virtual private network(vpn)
Virtual private network(vpn)Virtual private network(vpn)
Virtual private network(vpn)sonalikasingh15
 
Top vpn interview question and answer
Top vpn  interview question and answerTop vpn  interview question and answer
Top vpn interview question and answerHub4Tech.com
 
Integrating wi fi for mobile networks
Integrating wi fi for mobile networksIntegrating wi fi for mobile networks
Integrating wi fi for mobile networksBev Anderson
 
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...techUK
 
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALAVIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALASaikiran Panjala
 
Husky VPN.pdf
Husky VPN.pdfHusky VPN.pdf
Husky VPN.pdfVograce
 

Similar to PAWS Architecture (20)

Buildvpn1.pdf
Buildvpn1.pdfBuildvpn1.pdf
Buildvpn1.pdf
 
WLAN:VPN Security
WLAN:VPN SecurityWLAN:VPN Security
WLAN:VPN Security
 
Virtual Private Network
Virtual Private NetworkVirtual Private Network
Virtual Private Network
 
csevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdfcsevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdf
 
Virtual Private Networks (VPN) ppt
Virtual Private Networks (VPN) pptVirtual Private Networks (VPN) ppt
Virtual Private Networks (VPN) ppt
 
AWS VPC .pptx
AWS  VPC .pptxAWS  VPC .pptx
AWS VPC .pptx
 
Allaboutvpn
AllaboutvpnAllaboutvpn
Allaboutvpn
 
my presentation on vpn
my presentation on vpnmy presentation on vpn
my presentation on vpn
 
All About VPN
All About VPNAll About VPN
All About VPN
 
Virtual private network(vpn)
Virtual private network(vpn)Virtual private network(vpn)
Virtual private network(vpn)
 
Top vpn interview question and answer
Top vpn  interview question and answerTop vpn  interview question and answer
Top vpn interview question and answer
 
Integrating wi fi for mobile networks
Integrating wi fi for mobile networksIntegrating wi fi for mobile networks
Integrating wi fi for mobile networks
 
Vpn alternative whitepaper
Vpn alternative whitepaperVpn alternative whitepaper
Vpn alternative whitepaper
 
Vpn-Virtual Private Network
Vpn-Virtual Private NetworkVpn-Virtual Private Network
Vpn-Virtual Private Network
 
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
 
Shradhamaheshwari vpn
Shradhamaheshwari vpnShradhamaheshwari vpn
Shradhamaheshwari vpn
 
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALAVIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
 
Virtual Private Network
Virtual Private NetworkVirtual Private Network
Virtual Private Network
 
WSN netw layer.pptx
WSN netw layer.pptxWSN netw layer.pptx
WSN netw layer.pptx
 
Husky VPN.pdf
Husky VPN.pdfHusky VPN.pdf
Husky VPN.pdf
 

Recently uploaded

Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityIES VE
 
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...AliaaTarek5
 
Time Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsTime Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsNathaniel Shimoni
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...Wes McKinney
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentPim van der Noll
 
Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfNeo4j
 
2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch TuesdayIvanti
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
Data governance with Unity Catalog Presentation
Data governance with Unity Catalog PresentationData governance with Unity Catalog Presentation
Data governance with Unity Catalog PresentationKnoldus Inc.
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Hiroshi SHIBATA
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPathCommunity
 
Testing tools and AI - ideas what to try with some tool examples
Testing tools and AI - ideas what to try with some tool examplesTesting tools and AI - ideas what to try with some tool examples
Testing tools and AI - ideas what to try with some tool examplesKari Kakkonen
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesAssure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesThousandEyes
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersRaghuram Pandurangan
 
Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...
Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...
Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...Scott Andery
 

Recently uploaded (20)

Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a reality
 
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
(How to Program) Paul Deitel, Harvey Deitel-Java How to Program, Early Object...
 
Time Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsTime Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directions
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
 
Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdf
 
2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch Tuesday
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
Data governance with Unity Catalog Presentation
Data governance with Unity Catalog PresentationData governance with Unity Catalog Presentation
Data governance with Unity Catalog Presentation
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to Hero
 
Testing tools and AI - ideas what to try with some tool examples
Testing tools and AI - ideas what to try with some tool examplesTesting tools and AI - ideas what to try with some tool examples
Testing tools and AI - ideas what to try with some tool examples
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesAssure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information Developers
 
Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...
Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...
Enhancing User Experience - Exploring the Latest Features of Tallyman Axis Lo...
 

PAWS Architecture

  • 1. Prof. Jon Crowcroft, Dr. Murray Goulden, Dr. Christian Greiffenhagen, Heidi Howard, Prof. Derek McAuley, Dr. Richard Mortier, Dr. Milena Radenkovic, Dr. Arjuna Sathiaseelan Ubiquitous Access to Public Services Online with PAWS
  • 2. "All people should be allowed to connect to and express themselves freely on the Internet" - UN Human Rights Council
  • 3. Lowest Cost Denominator Network Introducing a new level of basic access, bridging the gap between no access and full access Offering less than best effort access to all 10 % of the UK population do not have internet access
  • 4. Aspley, Nottingham 3 month trial One of the most deprived areas in the country ~1/3 without internet access 50 new users 50 sharers
  • 5. Wireless Community Networks (WCN) Forming Co-op's where you share your WiFi and in turn can use other's Fon is the most popular WCN, with > 8 million FON hotspots worldwide This demonstrates that people are willing to share their internet connection
  • 6. Introducing PAWS Public Access Wifi Service (PAWS) works with local councils and communities to give everyone access to basic public services online. Aims ● Confidentiality ● Accountability ● Ease of Use ● Priority ● Authentication ● Scalability
  • 7. Ease of Use Most home routers are provided by ISP's, plugged in and left on default settings Not scalable to re-configure everyone's routers Introducing the PAWS access point, a Netgear router running OpenWRT
  • 8. Priority We need to measure the spare network capacity available to each PAWS access point Project BISmark by Georgia Tech 3 month trial: 1 month of measurement, then 2 months of use Throttling traffic at the PAWS access point
  • 9. Authentication User need to be able to authenticate themselves to the PAWS network at any PAWS box We have a RADIUS server in Nottingham This can be linked to the council's authentication servers
  • 10. Accountability PAWS users need to have a separate public IP address from the sharer. Sharers must not be accountable for users' actions online Using a virtual private network (VPN) to a secure endpoint so all PAWS network traffic has the same IP address Use PAWS access point firewalls to enforce use of PAWS VPN
  • 11. Confidentiality WiFi Encryption often provides weak security Traffic passes through the sharer's home router where it can be sniffed We already get this fixed for free with VPN to the user's devices
  • 12.
  • 13. Scalability Authentication across deployment areas You are registered with your home area, authentication when travelling is directed to your home authentication server but we allow use of the nearest VPN server
  • 14. Limitations - VPN setup on some client devices is difficult - The most widely supported VPN is PPTP, but its been proven insecure - Some home routers block VPN traffic by default - PAWS Routers currently cost £130 each - Single point of failure, all traffic routed though VPN server - Little incentive to share
  • 15. Ideas for Future Work - Two tier system, where users who are also sharers get more bandwidth - For users who are also sharers use their PAWS box as the VPN endpoint instead - VPN from PAWS AP instead of client devices, combined with WPA Enterprise from the device to PAWS AP - Client apps to map coverage, automatically connect to VPN etc.. - Implement fallback in PAWS access points
  • 16. Questions & Comments Heidi Howard hh360@cam.ac.uk @heidiann360 @heidi-ann