DocumentCode
1914002
Title
Network management and control mechanisms to prevent maliciously induced network instability
Author
Skoog, R.A. ; Jasinski, N. ; Shayman, M.A. ; Ghahremanpour, R. ; Kalantari, M.
Author_Institution
Telcordia Technol. Inc., Red Bank, NJ, USA
fYear
2002
fDate
2002
Firstpage
345
Lastpage
358
Abstract
Large networks relying on real-time processing can be driven into unstable modes of operation (e.g., routing system failures, routing flaps, congestion and deadlock scenarios, system crash chain reactions, etc.). In the past, unintentional system faults have led to frame relay networks, SS7 signaling networks, and PSTNs going into unstable modes that have led to major service disruptions. A serious concern is that a malicious party could induce similar instabilities. The vulnerability of a network to instabilities may be due to unrecognized design flaws or hidden software bugs. Since these details are not known in advance, effective control mechanisms tailored to the specifics of the vulnerability are virtually impossible to achieve. However, it is our contention that there are a limited number of "generic propagation mechanisms" that enable these network instabilities to occur. By enumerating these propagation mechanisms and designing network management and control mechanisms to mitigate them, it would be possible to stabilize networks against malicious attack even when the details of the network vulnerability being exploited are unknown. We focus on a single example of a generic propagation mechanism that can occur in IP and ATM networks using link state routing protocols. The propagation mechanism is overload propagation in the control plane caused by excessive route updates. Network management and control mechanisms for mitigating this propagation mechanism are developed and validated through simulation of both the control and data planes.
Keywords
asynchronous transfer mode; packet switching; protocols; telecommunication control; telecommunication network management; telecommunication network routing; telecommunication signalling; transport protocols; ATM networks; IP networks; PSTN; SS7 signaling networks; congestion; deadlock; frame relay networks; generic propagation mechanisms; link state routing protocols; maliciously induced network instability; network control; network management; network vulnerability; overload propagation; real-time processing; routing flaps; routing system failures; simulation; software bugs; system crash chain reactions; unintentional system faults; Computer network management; Computer networks; Control systems; Educational institutions; Failure analysis; Frame relay; Real time systems; Routing; Springs; Telecommunication control;
fLanguage
English
Publisher
ieee
Conference_Titel
Network Operations and Management Symposium, 2002. NOMS 2002. 2002 IEEE/IFIP
Print_ISBN
0-7803-7382-0
Type
conf
DOI
10.1109/NOMS.2002.1015593
Filename
1015593
Link To Document