SlideShare a Scribd company logo
1 of 16
Download to read offline
Prof. Jon Crowcroft, Dr. Murray Goulden, Dr. Christian Greiffenhagen,
Heidi Howard, Prof. Derek McAuley, Dr. Richard Mortier, Dr. Milena
Radenkovic, Dr. Arjuna Sathiaseelan
Ubiquitous Access to
Public Services Online
with PAWS
"All people should be allowed to connect to and express
themselves freely on the Internet" - UN Human Rights
Council
Lowest Cost Denominator Network
Introducing a new level of basic access,
bridging the gap between no access and full
access
Offering less than best effort access to all
10 % of the UK population do not have internet
access
Aspley, Nottingham
3 month trial
One of the most
deprived areas in
the country
~1/3 without internet
access
50 new users
50 sharers
Wireless Community Networks (WCN)
Forming Co-op's where you share your WiFi
and in turn can use other's
Fon is the most popular WCN, with > 8 million
FON hotspots worldwide
This demonstrates
that people are willing
to share their internet
connection
Introducing PAWS
Public Access Wifi Service (PAWS) works with
local councils and communities to give
everyone access to basic public services
online.
Aims
● Confidentiality
● Accountability
● Ease of Use
● Priority
● Authentication
● Scalability
Ease of Use
Most home routers are provided by ISP's,
plugged in and left on default settings
Not scalable to re-configure everyone's routers
Introducing the PAWS access point, a Netgear
router running OpenWRT
Priority
We need to measure the spare network
capacity available to each PAWS access point
Project BISmark by Georgia Tech
3 month trial: 1 month of measurement, then 2
months of use
Throttling traffic at the PAWS access point
Authentication
User need to be able to authenticate
themselves to the PAWS network at any PAWS
box
We have a RADIUS server in Nottingham
This can be linked to the council's
authentication servers
Accountability
PAWS users need to have a separate public IP
address from the sharer. Sharers must not be
accountable for users' actions online
Using a virtual private network (VPN) to a secure
endpoint so all PAWS network traffic has the
same IP address
Use PAWS access point firewalls
to enforce use of PAWS VPN
Confidentiality
WiFi Encryption often provides weak security
Traffic passes through the sharer's home router
where it can be sniffed
We already get this fixed for free with VPN to
the user's devices
Scalability
Authentication across deployment areas
You are registered with your home area,
authentication when travelling is directed to
your home authentication server but we allow
use of the nearest VPN server
Limitations
- VPN setup on some client devices is difficult
- The most widely supported VPN is PPTP, but
its been proven insecure
- Some home routers block VPN traffic by
default
- PAWS Routers currently cost £130 each
- Single point of failure, all traffic routed though
VPN server
- Little incentive to share
Ideas for Future Work
- Two tier system, where users who are also
sharers get more bandwidth
- For users who are also sharers use their
PAWS box as the VPN endpoint instead
- VPN from PAWS AP instead of client devices,
combined with WPA Enterprise from the device
to PAWS AP
- Client apps to map coverage, automatically
connect to VPN etc..
- Implement fallback in PAWS access points
Questions & Comments
Heidi Howard
hh360@cam.ac.uk
@heidiann360
@heidi-ann

More Related Content

What's hot

2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider
hazirma
 

What's hot (19)

DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues TelecomDWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
DWS17 - Cedric LEVASSEUR- Fibre to 5G seminar - Bouygues Telecom
 
Things Manchester Presentation for Leeds Digital Festival
Things Manchester Presentation for Leeds Digital FestivalThings Manchester Presentation for Leeds Digital Festival
Things Manchester Presentation for Leeds Digital Festival
 
Find Fiber Optics Supplies and Services Dubai
Find Fiber Optics Supplies and Services  DubaiFind Fiber Optics Supplies and Services  Dubai
Find Fiber Optics Supplies and Services Dubai
 
2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider2.2.1.3 Internet Service Provider
2.2.1.3 Internet Service Provider
 
Broadband technology wired and wireless
Broadband technology wired and wireless Broadband technology wired and wireless
Broadband technology wired and wireless
 
Wavelength services
Wavelength servicesWavelength services
Wavelength services
 
Bandwidth
BandwidthBandwidth
Bandwidth
 
Isp
IspIsp
Isp
 
INCA Roadshow Taunton - David Hall - Somerset County Council - The Story so Far
INCA Roadshow Taunton - David Hall - Somerset County Council - The Story so FarINCA Roadshow Taunton - David Hall - Somerset County Council - The Story so Far
INCA Roadshow Taunton - David Hall - Somerset County Council - The Story so Far
 
Carrier Wifi
Carrier Wifi Carrier Wifi
Carrier Wifi
 
INCA Roadshow Taunton - Mike Locke - Satellite Internet
INCA Roadshow Taunton - Mike Locke - Satellite InternetINCA Roadshow Taunton - Mike Locke - Satellite Internet
INCA Roadshow Taunton - Mike Locke - Satellite Internet
 
Wireless Isp Overview
Wireless Isp OverviewWireless Isp Overview
Wireless Isp Overview
 
Isp
IspIsp
Isp
 
ISP
ISPISP
ISP
 
Connecting to the Internet
Connecting to the InternetConnecting to the Internet
Connecting to the Internet
 
Extenet License Agreement
Extenet License Agreement Extenet License Agreement
Extenet License Agreement
 
INCA Roadshow Taunton - Joe Frost - Gigaclear
INCA Roadshow Taunton -  Joe Frost - GigaclearINCA Roadshow Taunton -  Joe Frost - Gigaclear
INCA Roadshow Taunton - Joe Frost - Gigaclear
 
Final isp
Final ispFinal isp
Final isp
 
Business networking
Business networkingBusiness networking
Business networking
 

Viewers also liked (9)

04 pas manual aplikasi sms
04 pas   manual aplikasi sms04 pas   manual aplikasi sms
04 pas manual aplikasi sms
 
Print technology transfer a practical guide
Print   technology transfer a practical guidePrint   technology transfer a practical guide
Print technology transfer a practical guide
 
Signposts
SignpostsSignposts
Signposts
 
8164 luyen dich_tieng_anh
8164 luyen dich_tieng_anh8164 luyen dich_tieng_anh
8164 luyen dich_tieng_anh
 
Providing Security for Wireless Community Networks (PAWS)
Providing Security for Wireless Community Networks (PAWS)Providing Security for Wireless Community Networks (PAWS)
Providing Security for Wireless Community Networks (PAWS)
 
Pyland - 3 minute intro
Pyland - 3 minute intro Pyland - 3 minute intro
Pyland - 3 minute intro
 
图书馆隐性知识管理
图书馆隐性知识管理图书馆隐性知识管理
图书馆隐性知识管理
 
图书馆隐性知识管理
图书馆隐性知识管理图书馆隐性知识管理
图书馆隐性知识管理
 
Flat Stanley in London, England
Flat Stanley in London, EnglandFlat Stanley in London, England
Flat Stanley in London, England
 

Similar to PAWS Architecture

csevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdfcsevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdf
HirazNor
 
my presentation on vpn
my presentation on vpnmy presentation on vpn
my presentation on vpn
jadeja dhanraj
 
Integrating wi fi for mobile networks
Integrating wi fi for mobile networksIntegrating wi fi for mobile networks
Integrating wi fi for mobile networks
Bev Anderson
 

Similar to PAWS Architecture (20)

Buildvpn1.pdf
Buildvpn1.pdfBuildvpn1.pdf
Buildvpn1.pdf
 
WLAN:VPN Security
WLAN:VPN SecurityWLAN:VPN Security
WLAN:VPN Security
 
Virtual Private Network
Virtual Private NetworkVirtual Private Network
Virtual Private Network
 
csevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdfcsevpnppt-170905123948 (1).pdf
csevpnppt-170905123948 (1).pdf
 
Virtual Private Networks (VPN) ppt
Virtual Private Networks (VPN) pptVirtual Private Networks (VPN) ppt
Virtual Private Networks (VPN) ppt
 
AWS VPC .pptx
AWS  VPC .pptxAWS  VPC .pptx
AWS VPC .pptx
 
All About VPN
All About VPNAll About VPN
All About VPN
 
my presentation on vpn
my presentation on vpnmy presentation on vpn
my presentation on vpn
 
Allaboutvpn
AllaboutvpnAllaboutvpn
Allaboutvpn
 
Virtual private network(vpn)
Virtual private network(vpn)Virtual private network(vpn)
Virtual private network(vpn)
 
Top vpn interview question and answer
Top vpn  interview question and answerTop vpn  interview question and answer
Top vpn interview question and answer
 
Integrating wi fi for mobile networks
Integrating wi fi for mobile networksIntegrating wi fi for mobile networks
Integrating wi fi for mobile networks
 
Vpn alternative whitepaper
Vpn alternative whitepaperVpn alternative whitepaper
Vpn alternative whitepaper
 
Vpn-Virtual Private Network
Vpn-Virtual Private NetworkVpn-Virtual Private Network
Vpn-Virtual Private Network
 
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
UK Spectrum Policy Forum - Simon Trist, Arqiva - Unlocking the promise of the...
 
Shradhamaheshwari vpn
Shradhamaheshwari vpnShradhamaheshwari vpn
Shradhamaheshwari vpn
 
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALAVIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
VIRTUAL PRIVATE NETWORKS BY SAIKIRAN PANJALA
 
Virtual Private Network
Virtual Private NetworkVirtual Private Network
Virtual Private Network
 
WSN netw layer.pptx
WSN netw layer.pptxWSN netw layer.pptx
WSN netw layer.pptx
 
Husky VPN.pdf
Husky VPN.pdfHusky VPN.pdf
Husky VPN.pdf
 

Recently uploaded

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 

Recently uploaded (20)

Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
AI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by Anitaraj
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
JohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptx
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 

PAWS Architecture

  • 1. Prof. Jon Crowcroft, Dr. Murray Goulden, Dr. Christian Greiffenhagen, Heidi Howard, Prof. Derek McAuley, Dr. Richard Mortier, Dr. Milena Radenkovic, Dr. Arjuna Sathiaseelan Ubiquitous Access to Public Services Online with PAWS
  • 2. "All people should be allowed to connect to and express themselves freely on the Internet" - UN Human Rights Council
  • 3. Lowest Cost Denominator Network Introducing a new level of basic access, bridging the gap between no access and full access Offering less than best effort access to all 10 % of the UK population do not have internet access
  • 4. Aspley, Nottingham 3 month trial One of the most deprived areas in the country ~1/3 without internet access 50 new users 50 sharers
  • 5. Wireless Community Networks (WCN) Forming Co-op's where you share your WiFi and in turn can use other's Fon is the most popular WCN, with > 8 million FON hotspots worldwide This demonstrates that people are willing to share their internet connection
  • 6. Introducing PAWS Public Access Wifi Service (PAWS) works with local councils and communities to give everyone access to basic public services online. Aims ● Confidentiality ● Accountability ● Ease of Use ● Priority ● Authentication ● Scalability
  • 7. Ease of Use Most home routers are provided by ISP's, plugged in and left on default settings Not scalable to re-configure everyone's routers Introducing the PAWS access point, a Netgear router running OpenWRT
  • 8. Priority We need to measure the spare network capacity available to each PAWS access point Project BISmark by Georgia Tech 3 month trial: 1 month of measurement, then 2 months of use Throttling traffic at the PAWS access point
  • 9. Authentication User need to be able to authenticate themselves to the PAWS network at any PAWS box We have a RADIUS server in Nottingham This can be linked to the council's authentication servers
  • 10. Accountability PAWS users need to have a separate public IP address from the sharer. Sharers must not be accountable for users' actions online Using a virtual private network (VPN) to a secure endpoint so all PAWS network traffic has the same IP address Use PAWS access point firewalls to enforce use of PAWS VPN
  • 11. Confidentiality WiFi Encryption often provides weak security Traffic passes through the sharer's home router where it can be sniffed We already get this fixed for free with VPN to the user's devices
  • 12.
  • 13. Scalability Authentication across deployment areas You are registered with your home area, authentication when travelling is directed to your home authentication server but we allow use of the nearest VPN server
  • 14. Limitations - VPN setup on some client devices is difficult - The most widely supported VPN is PPTP, but its been proven insecure - Some home routers block VPN traffic by default - PAWS Routers currently cost £130 each - Single point of failure, all traffic routed though VPN server - Little incentive to share
  • 15. Ideas for Future Work - Two tier system, where users who are also sharers get more bandwidth - For users who are also sharers use their PAWS box as the VPN endpoint instead - VPN from PAWS AP instead of client devices, combined with WPA Enterprise from the device to PAWS AP - Client apps to map coverage, automatically connect to VPN etc.. - Implement fallback in PAWS access points
  • 16. Questions & Comments Heidi Howard hh360@cam.ac.uk @heidiann360 @heidi-ann