Security Evaluation of a Control System Using Named Data Networking

被引:0
|
作者
Perez, Victor [1 ]
Garip, Mevlut Turker [1 ]
Lam, Silas [1 ]
Zhang, Lixia [1 ]
机构
[1] Univ Calif Los Angeles, Dept Comp Sci, Los Angeles, CA 90095 USA
关键词
Computer networks; Computer security; Building automation;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Security is an integral part of networked computer systems. The recent Named Data Networking (NDN) project aims to develop a new Internet architecture that communicates data using names rather than locations, the latter of which is what the current IP-based Internet does with IP addresses. One of the first real-world applications using NDN is a lighting control system. We conduct a red team assessment of the current state of the security of this lighting system and its NDN implementation. The system is representative of a more general class of automated controller systems. Our analysis found that due to NDN's use of named data, the system inherently prevents most attacks that IP-based systems are vulnerable to. Although many parts of the system are secure, we discovered some problems with the verification of timestamps and processing of large packets that led to a severe memory leak. The system also lacks a secure key distribution mechanism. While NDN security is on the right track, there are important security design issues NDN must account for.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] An Explicit Congestion Control Algorithm for Named Data Networking
    Ren, Yongmao
    Li, Jun
    Shi, Shanshan
    Li, Lingling
    Wang, Guodong
    2016 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2016,
  • [22] Named data networking protocols for tactical command and control
    Evans, Joseph B.
    Pennington, Steven G.
    Ewy, Benjamin J.
    OPEN ARCHITECTURE/OPEN BUSINESS MODEL NET-CENTRIC SYSTEMS AND DEFENSE TRANSFORMATION 2018, 2018, 10651
  • [23] A Practical Congestion Control Scheme for Named Data Networking
    Schneider, Klaus
    Yi, Cheng
    Zhang, Beichuan
    Zhang, Lixia
    PROCEEDINGS OF THE 2016 3RD ACM CONFERENCE ON INFORMATION-CENTRIC NETWORKING (ACM-ICN '16), 2016, : 21 - 30
  • [24] Transport Control Strategies in Named Data Networking: A Survey
    Chen, Qingxia
    Xie, Renchao
    Yu, F. Richard
    Liu, Jiang
    Huang, Tao
    Liu, Yunjie
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2016, 18 (03): : 2052 - 2083
  • [25] Hierarchical Identity Based Cryptography For Security and Trust in Named Data Networking
    Hamdane, Balkis
    Boussada, Rihab
    Elhdhili, Mohamed Elhoucine
    El Fatmi, Sihem Guemara
    2017 IEEE 26TH INTERNATIONAL CONFERENCE ON ENABLING TECHNOLOGIES - INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES (WETICE), 2017, : 226 - 231
  • [26] Performance Evaluation of Automatic Dependant Surveillance Broadcast Data Distribution Using Named Data Networking
    Perbawa, Muhammad Raka
    Sari, Riri Fitri
    2018 2ND INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING AND INFORMATICS (ICON EEI): TOWARD THE MOST EFFICIENT WAY OF MAKING AND DEALING WITH FUTURE ELECTRICAL POWER SYSTEM AND BIG DATA ANALYSIS, 2018, : 1 - 6
  • [27] A Survey on Security Attacks and Intrusion Detection Mechanisms in Named Data Networking
    Hidouri, Abdelhak
    Hajlaoui, Nasreddine
    Touati, Haifa
    Hadded, Mohamed
    Muhlethaler, Paul
    COMPUTERS, 2022, 11 (12)
  • [28] User-Driven Smart Home Control System Based on Named Data Networking
    Huang, Manxin
    Li, Ru
    Fan, Jun
    Zhang, Xin
    2018 TENTH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS (ICUFN 2018), 2018, : 148 - 153
  • [29] Decentralized Social Networking Using Named-Data
    Zeynalvand, Leonid
    Gharib, Mohammed
    Movaghar, Ali
    COMPUTER NETWORKS, CN 2015, 2015, 522 : 421 - 430
  • [30] Augmented Computing at the Edge Using Named Data Networking
    Pirmagomedov, Rustam
    Srikanteswara, Srikathyayani
    Moltchanov, Dmitri
    Arrobo, Gabriel
    Zhang, Yi
    Himayat, Nageen
    Koucheryavy, Yevgeni
    2020 IEEE GLOBECOM WORKSHOPS (GC WKSHPS), 2020,