Creating an Isolated P2P Network with IPFS

On a related topic, I also wrote “Creating an Isolated P2P Network with Hypercore.”


Logo of IPFS

Logo of IPFS

P2P networks are oftentimes global, i.e., all peers form a single global network. For example, P2P file sharing systems are typically so. InterPlanetary File System, or IPFS (website) is designed for that use case as well.

However, that is a problem for me; I want my peers to form an isolated network by themselves and by themselves only, detached from anybody else’s. The rationale is that even with encryption and other security measures in place, data that exists as part of the global network has higher chance of security breach than one that doesn’t. I said “isolated network,” but that does not mean the all the peers are on a single private network; my assumption is that some will be on the public network (i.e., on the Internet), and the rest, spread on multiple private networks. (When I say “private network,” I mean one that is behind a firewall.)

OrbitDB relies on IPFS and thus inherits IPFS’s to-be-used-in-a-single-global-network assumption. If you were to use OrbitDB for my intended scenario, you would not be able to use it with default settings. Thankfully this seems possible, because OrbitDB does not hide the fact that it depends on IPFS, and lets users to tweak settings for IPFS.

I have not tested this myself, but I believe the key here is to modify the bootstrap list. More specifically, the one for a publicly accessible peer need to be other publicly accessible peers within this isolated IPFS network, or none if there are no others; and the one for peers on private networks, those publicly accessible peers. The following articles may help:

By the way, IPFS is used in Microsoft’s newly released decentralized identity system ION. IPFS was given fine-tuning to accommodate its use by ION.

Creating an Isolated P2P Network with IPFS」への2件のフィードバック

  1. ピンバック: A WebRTC-Based Generic Way to Create An Isolated P2P Network | あくまで暫定措置としてのブログ
  2. ピンバック: Creating an Isolated P2P Network with Hypercore | あくまで暫定措置としてのブログ

コメントを残す

以下に詳細を記入するか、アイコンをクリックしてログインしてください。

WordPress.com ロゴ

WordPress.com アカウントを使ってコメントしています。 ログアウト /  変更 )

Twitter 画像

Twitter アカウントを使ってコメントしています。 ログアウト /  変更 )

Facebook の写真

Facebook アカウントを使ってコメントしています。 ログアウト /  変更 )

%s と連携中

このサイトはスパムを低減するために Akismet を使っています。コメントデータの処理方法の詳細はこちらをご覧ください