Protecting Clock Synchronization: Adversary Detection through Network Monitoring

被引:16
|
作者
Lisova, Elena [1 ]
Gutierrez, Marina [1 ,2 ]
Steiner, Wilfried [2 ]
Uhlemann, Elisabeth [1 ]
Akerberg, Johan [1 ]
Dobrin, Radu [1 ]
Bjorkman, Andmats [1 ]
机构
[1] Malardalen Univ, Sch Innovat Design & Engn, Vasteras, Sweden
[2] TTTech Comp Tech AG, Vienna, Austria
关键词
D O I
10.1155/2016/6297476
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Nowadays, industrial networks are often used for safety-critical applications with real-time requirements. Such applications usually have a time-triggered nature with message scheduling as a core property. Scheduling requires nodes to share the same notion of time, that is, to be synchronized. Therefore, clock synchronization is a fundamental asset in real-time networks. However, since typical standards for clock synchronization, for example, IEEE 1588, do not provide the required level of security, it raises the question of clock synchronization protection. In this paper, we identify a way to break synchronization based on the IEEE 1588 standard, by conducting a man-in-the-middle (MIM) attack followed by a delay attack. A MIM attack can be accomplished through, for example, Address Resolution Protocol (ARP) poisoning. Using the AVISPA tool, we evaluate the potential to perform a delay attack using ARP poisoning and analyze its consequences showing both that the attack can, indeed, break clock synchronization and that some design choices, such as a relaxed synchronization condition mode, delay bounding, and using knowledge of environmental conditions, can make the network more robust/resilient against these kinds of attacks. Lastly, a Configuration Agent is proposed to monitor and detect anomalies introduced by an adversary performing attacks targeting clock synchronization.
引用
收藏
页数:13
相关论文
共 50 条
  • [21] Network time synchronization using clock offset optimization
    Gurewitz, O
    Cidon, I
    Sidi, M
    11TH IEEE INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS, PROCEEDINGS, 2003, : 212 - 221
  • [22] Probabilistic Model For Clock Synchronization Of Cascaded Network Elements
    Na, Chongning
    Obradovic, Dragan
    Scheiterer, Ruxandra Lupas
    I2MTC: 2009 IEEE INSTRUMENTATION & MEASUREMENT TECHNOLOGY CONFERENCE, VOLS 1-3, 2009, : 1547 - 1551
  • [23] Resilience Bounds of Network Clock Synchronization with Fault Correction
    Jiang, Linshan
    Tan, Rui
    Easwaran, Arvind
    ACM TRANSACTIONS ON SENSOR NETWORKS, 2020, 16 (04)
  • [24] Multiple clock domain synchronization for Network on Chip architectures
    Nyathi, Jabulani
    Sarkar, Souradip
    Pande, Partha Pratim
    20TH ANNIVERSARY IEEE INTERNATIONAL SOC CONFERENCE, PROCEEDINGS, 2007, : 291 - 294
  • [25] WSN Clock Synchronization by Network-coded Messages
    Briff, Pablo
    Lutenberg, Ariel
    Rey Vega, Leonardo
    Vargas, Fabian
    Patwary, Mohammad
    Carrasco, Rolando
    2017 EIGHT ARGENTINE SYMPOSIUM AND CONFERENCE ON EMBEDDED SYSTEMS (CASE), 2017, : 31 - 34
  • [26] Clock Synchronization in IoT Network Using Cloud Computing
    Jha, Ravi Shankar
    Gupta, Punit
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 97 (04) : 6469 - 6481
  • [27] Self-stabilizing clock synchronization in a hierarchical network
    Ciuffoletti, A
    19TH IEEE INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS - WORKSHOP ON SELF-STABILIZING SYSTEMS, PROCEEDINGS, 1999, : 86 - 93
  • [28] A PROBABILISTIC APPROACH TO CLOCK SYNCHRONIZATION OF CASCADED NETWORK ELEMENTS
    Na, Chongning
    Obradovic, Dragan
    Scheiterer, Ruxandra Lupas
    2009 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, VOLS 1- 8, PROCEEDINGS, 2009, : 1793 - 1796
  • [29] Clock Synchronization for Wireless Sensor Network with Communication Delay
    Garone, Emanuele
    Gasparri, Andrea
    Lamonaca, Francesco
    2013 AMERICAN CONTROL CONFERENCE (ACC), 2013, : 771 - 776
  • [30] Passive cluster based clock synchronization in sensor network
    Mamun-Or-Rashid, M
    Hong, CS
    In, CH
    TELECOMMUNICATIONS 2005, PROCEEDINGS, 2005, : 340 - 345