Title :
Mitigating Attacks Against Measurement-Based Adaptation Mechanisms in Unstructured Multicast Overlay Networks
Author :
Walters, Aaron ; Zage, David ; Nita-Rotaru, Cristina
Author_Institution :
Dept. of Comput. Sci., Purdue Univ., West Lafayette, IN
Abstract :
Many multicast overlay networks maintain application-specific performance goals such as bandwidth, latency, jitter and loss rate by dynamically changing the overlay structure using measurement-based adaptation mechanisms. This results in an unstructured overlay where no neighbor selection constraints are imposed. Although such networks provide resilience to benign failures, they are susceptible to attacks conducted by adversaries that compromise overlay nodes. Previous defense solutions proposed to address attacks against overlay networks rely on strong organizational constraints and are not effective for unstructured overlays. In this work, we identify, demonstrate and mitigate insider attacks against measurement-based adaptation mechanisms in unstructured multicast overlay networks. The attacks target the overlay network construction, maintenance, and availability and allow malicious nodes to control significant traffic in the network, facilitating selective forwarding, traffic analysis, and overlay partitioning. We propose techniques to decrease the number of incorrect or unnecessary adaptations by using outlier detection. We demonstrate the attacks and mitigation techniques in the context of a mature, operationally deployed overlay multicast system, ESM, through real-life deployments and emulations conducted on the PlanetLab and DETER testbeds, respectively.
Keywords :
multicast communication; telecommunication security; telecommunication traffic; DETER testbeds; PlanetLab; application-specific performance; jitter rate; loss rate; measurement-based adaptation mechanisms; multicast overlay networks; multicast system; organizational constraints; outlier detection; overlay partitioning; real-life deployments; selective forwarding; traffic analysis; unstructured multicast overlay networks; Availability; Bandwidth; Communication system traffic control; Delay; Emulation; Extraterrestrial measurements; Jitter; Loss measurement; Performance loss; Resilience; Adaptivity; Insider Attacks; Overlay Networks; Security;
Conference_Titel :
Network Protocols, 2006. ICNP '06. Proceedings of the 2006 14th IEEE International Conference on
Conference_Location :
Santa Barbara, CA
Print_ISBN :
1-4244-0593-9
Electronic_ISBN :
1-4244-0594-7
DOI :
10.1109/ICNP.2006.320199