• DocumentCode
    2379463
  • Title

    Scalable secure group communication over IP multicast

  • Author

    Banerjee, Suman ; Bhattacharjee, Bobby

  • Author_Institution
    Dept. of Comput. Sci., Maryland Univ., College Park, MD, USA
  • fYear
    2001
  • fDate
    11-14 Nov. 2001
  • Firstpage
    261
  • Lastpage
    269
  • Abstract
    We introduce and analyze a scalable re-keying scheme for implementing secure group communications over IP multicast. We show that our scheme incurs constant processing, message, and storage overhead for a re-key operation when a single member joins or leaves the group, and logarithmic overhead for bulk simultaneous changes to the group membership. These bounds hold even when group dynamics are not known a priori. Our re-keying algorithm requires a particular clustering of the members of the secure multicast group. We describe a protocol to achieve such clustering and show that it is feasible to efficiently cluster members over realistic Internet-like topologies. We evaluate the overhead of our own re-keying scheme and also of previously published schemes via simulation over an Internet topology map containing over 280,000 routers. Through analysis and detailed simulations, we show that this re-keying scheme performs better than previous schemes for a single change to group membership. Further, for bulk changes, our algorithm outperforms all previously known schemes by several orders of magnitude in terms of actual bandwidth usage, processing costs and storage requirements.
  • Keywords
    Internet; multicast communication; network topology; protocols; telecommunication security; IP multicast; Internet topologies; bandwidth usage; bulk simultaneous changes; clustering; group dynamics; group membership; logarithmic overhead; processing costs; protocol; re-key operation; scalable re-keying scheme; scalable secure group communication; secure multicast group; storage overhead; storage requirements; Analytical models; Clustering algorithms; Computer science; Costs; Cryptography; Educational institutions; Internet; Multicast algorithms; Performance analysis; Topology;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Protocols, 2001. Ninth International Conference on
  • Print_ISBN
    0-7695-1429-4
  • Type

    conf

  • DOI
    10.1109/ICNP.2001.992906
  • Filename
    992906