Mitigating attacks against measurement-based adaptation mechanisms in unstructured multicast overlay networks

被引:0
|
作者
Walters, A. Aron [2 ]
Zage, David [1 ]
Nita-Rotaru, Cristina [1 ]
机构
[1] Purdue Univ, CERIAS, Dept Comp Sci, 305 N Univ St, W Lafayette, IN 47907 USA
[2] 4tphi Res, Washington, DC 20004 USA
基金
美国国家科学基金会;
关键词
overlay networks; security; insider attacks; adaptivity;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Many multicast overpay networks maintain application-specific performance goals such as bandwidth, latency, jitter and loss rate by dynamically changing the overlay structure using measurement-based adaptation mechanisms. This results in an unstructured overlay where no neighbor selection constraints are imposed. Although such networks provide resilience to benign failures, they are susceptible to attacks conducted by adversaries that compromise overlay nodes. Previous defense solutions proposed to address attacks against overlay networks rely on strong organizational constraints and are not effective for unstructured overlays. In this work, we identify, demonstrate and mitigate insider attacks against measurement-based adaptation mechanisms in unstructured multicast overlay networks. The attacks target the overlay network construction, maintenance, and availability and allow malicious nodes to control significant traffic in the network, facilitating selective forwarding, traffic analysis, and overlay partitioning. We propose techniques to decrease the number of incorrect or unnecessary adaptations by using outlier detection. We demonstrate the attacks and mitigation techniques in the context of a mature, operationally deployed overlay multicast system, ESM, through real-life deployments and emulations conducted on the PlanetLab and DETER testbeds, respectively.
引用
收藏
页码:64 / +
页数:2
相关论文
共 50 条
  • [1] A Framework for Mitigating Attacks Against Measurement-Based Adaptation Mechanisms in Unstructured Multicast Overlay Networks
    Walters, Aaron
    Zage, David
    Rotaru, Cristina Nita
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2008, 16 (06) : 1434 - 1446
  • [2] The performance of measurement-based overlay networks
    Bauer, D
    Rooney, S
    Scotton, P
    Buchegger, S
    Iliadis, I
    FROM QOS PROVISIONING TO QOS CHARGING, PROCEEDINGS, 2002, 2511 : 115 - 124
  • [3] Measurement-based multicast admission control in diffserv networks
    Alanen, O
    Pääkkönen, M
    Hämäläinen, T
    Ketola, M
    Joutsensalo, J
    7th International Conference on Advanced Communication Technology, Vols 1 and 2, Proceedings, 2005, : 755 - 760
  • [4] Measurement-based construction of locality-aware overlay networks
    Zhang, XY
    Song, G
    Zhang, Q
    Zhu, WW
    Gao, LX
    Zhang, ZS
    2004 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-7, 2004, : 1401 - 1405
  • [5] Measurement-based multipath multicast
    Güven, T
    La, RJ
    Shayman, MA
    Bhattacharjee, B
    IEEE Infocom 2005: The Conference on Computer Communications, Vols 1-4, Proceedings, 2005, : 2803 - 2808
  • [6] A measurement-based approach for dynamic QoS adaptation in DiffServ networks
    Ahmed, T
    Boutaba, R
    Mehaoua, A
    COMPUTER COMMUNICATIONS, 2005, 28 (18) : 2020 - 2033
  • [7] Strategyproof mechanisms for dynamic multicast tree formation in overlay networks
    Yuen, S
    Li, BC
    IEEE Infocom 2005: The Conference on Computer Communications, Vols 1-4, Proceedings, 2005, : 2135 - 2146
  • [8] On the resistance of overlay networks against bandwidth exhaustion attacks
    Girlich, Franz
    Rossberg, Michael
    Schaefer, Guenter
    TELECOMMUNICATION SYSTEMS, 2015, 60 (04) : 539 - 552
  • [9] On the resistance of overlay networks against bandwidth exhaustion attacks
    Franz Girlich
    Michael Rossberg
    Guenter Schaefer
    Telecommunication Systems, 2015, 60 : 539 - 552
  • [10] Distributed social-based overlay adaptation for unstructured P2P networks
    Lin, Ching-Ju
    Chang, Yi-Ting
    Tsai, Shuo-Chan
    Chou, Cheng-Fu
    2007 IEEE GLOBAL INTERNET SYMPOSIUM, 2007, : 1 - +