• DocumentCode
    2376520
  • Title

    Packet forwarding misbehavior detection in next-generation networks

  • Author

    Desai, Vikram ; Natarajan, Sriram ; Wolf, Tilman

  • Author_Institution
    Dept. of Electr. & Comput. Eng., Univ. of Massachusetts, Amherst, MA, USA
  • fYear
    2012
  • fDate
    10-15 June 2012
  • Firstpage
    846
  • Lastpage
    851
  • Abstract
    The next-generation Internet promises to provide a fundamental shift in the underlying architecture to support dynamic deployment of network protocols. With the introduction of programmability and dynamic protocol deployment in routers, potential vulnerabilities and attacks are expected to increase. In this paper, we consider the problem of detecting packet forwarding misbehavior in routers. Specifically, we focus on an attack scenario, where a router selectively drops packets destined for another node. Detecting such an attack is challenging since it requires differentiating malicious packet drops from congestion-based packet losses. We propose a controller-based misbehavior detection technique that effectively detects malicious routers using a hash-based delay sampling and verification. We provide a performance analysis of the detection accuracy and quantify the performance overhead of our system. Our results show that our technique provides accurate detection with low sampling rates.
  • Keywords
    Internet; next generation networks; protocols; telecommunication congestion control; congestion-based packet losses; dynamic protocol deployment; hash-based delay sampling; hash-based verification; network protocols; next-generation Internet; next-generation networks; packet forwarding misbehavior detection; routers; Accuracy; Aggregates; Bismuth; Monitoring; Routing protocols;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communications (ICC), 2012 IEEE International Conference on
  • Conference_Location
    Ottawa, ON
  • ISSN
    1550-3607
  • Print_ISBN
    978-1-4577-2052-9
  • Electronic_ISBN
    1550-3607
  • Type

    conf

  • DOI
    10.1109/ICC.2012.6364319
  • Filename
    6364319