• DocumentCode
    1914002
  • Title

    Network management and control mechanisms to prevent maliciously induced network instability

  • Author

    Skoog, R.A. ; Jasinski, N. ; Shayman, M.A. ; Ghahremanpour, R. ; Kalantari, M.

  • Author_Institution
    Telcordia Technol. Inc., Red Bank, NJ, USA
  • fYear
    2002
  • fDate
    2002
  • Firstpage
    345
  • Lastpage
    358
  • Abstract
    Large networks relying on real-time processing can be driven into unstable modes of operation (e.g., routing system failures, routing flaps, congestion and deadlock scenarios, system crash chain reactions, etc.). In the past, unintentional system faults have led to frame relay networks, SS7 signaling networks, and PSTNs going into unstable modes that have led to major service disruptions. A serious concern is that a malicious party could induce similar instabilities. The vulnerability of a network to instabilities may be due to unrecognized design flaws or hidden software bugs. Since these details are not known in advance, effective control mechanisms tailored to the specifics of the vulnerability are virtually impossible to achieve. However, it is our contention that there are a limited number of "generic propagation mechanisms" that enable these network instabilities to occur. By enumerating these propagation mechanisms and designing network management and control mechanisms to mitigate them, it would be possible to stabilize networks against malicious attack even when the details of the network vulnerability being exploited are unknown. We focus on a single example of a generic propagation mechanism that can occur in IP and ATM networks using link state routing protocols. The propagation mechanism is overload propagation in the control plane caused by excessive route updates. Network management and control mechanisms for mitigating this propagation mechanism are developed and validated through simulation of both the control and data planes.
  • Keywords
    asynchronous transfer mode; packet switching; protocols; telecommunication control; telecommunication network management; telecommunication network routing; telecommunication signalling; transport protocols; ATM networks; IP networks; PSTN; SS7 signaling networks; congestion; deadlock; frame relay networks; generic propagation mechanisms; link state routing protocols; maliciously induced network instability; network control; network management; network vulnerability; overload propagation; real-time processing; routing flaps; routing system failures; simulation; software bugs; system crash chain reactions; unintentional system faults; Computer network management; Computer networks; Control systems; Educational institutions; Failure analysis; Frame relay; Real time systems; Routing; Springs; Telecommunication control;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Operations and Management Symposium, 2002. NOMS 2002. 2002 IEEE/IFIP
  • Print_ISBN
    0-7803-7382-0
  • Type

    conf

  • DOI
    10.1109/NOMS.2002.1015593
  • Filename
    1015593