BLAM: Lightweight Bloom-filter based DDoS Mitigation for Information-Centric IoT

被引:0
|
作者
Liu, Gang [1 ]
Quan, Wei [1 ]
Cheng, Nan [2 ]
Feng, Bohao [1 ]
Zhang, Hongke [1 ]
Shen, Xuemin [3 ]
机构
[1] Beijing Jiaotong Univ, Sch Elect & Informat Engn, Beijing 100044, Peoples R China
[2] Xidian Univ, Sch Telecommun Engn, Xian, Shaanxi, Peoples R China
[3] Univ Waterloo, Elect & Comp Engn, Waterloo, ON N2L 3G1, Canada
基金
中国国家自然科学基金; 加拿大自然科学与工程研究理事会;
关键词
PENDING INTEREST TABLE; CHALLENGES; INTERNET;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Information-Centric Networking (ICN) provides great potential to promote the development of the Internet of Things (IoT) due to its multicast nature and mobility support. However, the stateful forwarding peculiarity introduces new varietal attacks named Interest Flooding Attacks (IFA), which is stealthy but destructive for the resource-limited IoT devices. In this paper, we propose a lightweight BLoom-filter based Attack Mitigating (BLAM) mechanism to reduce the detecting memory cost, while guaranteeing both the detecting accuracy and delay. Specifically, each IoT node employs a small Bloom filter to check attack behaviors instead of the traditional memory-consuming operations, i.e., recording malicious requests. Bloom filter values by hashing the published data names with a set of hash functions, are encapsulated and distributed via a new message named Ba-NACK. Based on this design, two specific schemes are further proposed for the attack detecting and Bloom filter updating. We formulate the memory cost minimum problem and theoretically analyze that BLAM can reduce the memory cost. We also implement BLAM in a realistic network testbed to evaluate its performance. The results show that BLAM reduces the memory cost by 78.6 %, and reduces the delay from millisecond to microsecond with slight sacrifice of the accuracy by 0.4% compared with other state-of-the-art mechanisms.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Learned Bloom-filter for the efficient name lookup in Information-Centric Networking
    Wu, Qingtao
    Wang, Qianyu
    Zhang, Mingchuan
    Zheng, Ruijuan
    Zhu, Junlong
    Hu, Jiankun
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 186
  • [2] Learned Bloom-Filter for an Efficient Name Lookup in Information-Centric Networking
    Wang, Qianyu
    Wu, Qingtao
    Zhang, Mingchuan
    Zheng, Ruijuan
    Zhu, Junlong
    [J]. 2019 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2019,
  • [3] Selecting Bloom-filter Header Lengths for Secure Information Centric Networking
    Alzahrani, Bander A.
    Vassilakis, Vassilios G.
    Reed, Martin J.
    [J]. 2014 9TH INTERNATIONAL SYMPOSIUM ON COMMUNICATION SYSTEMS, NETWORKS & DIGITAL SIGNAL PROCESSING (CSNDSP), 2014, : 628 - 633
  • [4] BFR: a Bloom Filter-based Routing Approach for Information-Centric Networks
    Marandi, Ali
    Braun, Torsten
    Salamatian, Kave
    Thomos, Nikolaos
    [J]. 2017 IFIP NETWORKING CONFERENCE (IFIP NETWORKING) AND WORKSHOPS, 2017,
  • [5] Pull-based Bloom Filter-based Routing for Information-Centric Networks
    Marandi, Ali
    Braun, Torsten
    Salamatian, Kave
    Thomos, Nikolaos
    [J]. 2019 16TH IEEE ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC), 2019,
  • [6] Easy as ABC: A Lightweight Centrality-Based Caching Strategy for Information-Centric IoT
    Pfender, Jakob
    Valera, Alvin
    Seah, Winston K. G.
    [J]. PROCEEDINGS OF THE 2019 CONFERENCE ON INFORMATION-CENTRIC NETWORKING (ICN '19), 2019, : 100 - 111
  • [7] A Comparative Analysis of Bloom Filter-based Routing Protocols for Information-Centric Networks
    Marandi, Ali
    Braun, Torsten
    Salamatian, Kave
    Thomos, Nikolaos
    [J]. 2018 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2018, : 260 - 266
  • [8] Dual-collaborative DoS/DDoS mitigation approach in information-centric mobile Internet
    Chen, Jia
    Jia, Haiyu
    Liu, Qi
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2020, 33 (04)
  • [9] Information-Centric Networking for the Industrial IoT
    Guendogan, Cenk
    Kietzmann, Peter
    Schmidt, Thomas C.
    Lenders, Martine
    Petersen, Hauke
    Waehlisch, Matthias
    Frey, Michael
    Shzu-Juraschek, Felix
    [J]. PROCEEDINGS OF THE 4TH ACM CONFERENCE ON INFORMATION-CENTRIC NETWORKING (ICN 2017), 2017, : 214 - 215
  • [10] BGCC: a Bloom Filter-based Grouped-Chunk Caching Approach for Information-Centric Networking
    Zhi, Jiang
    Li, Jun
    Wu, Haibo
    [J]. 2018 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2018, : 70 - 73