• DocumentCode
    1088599
  • Title

    A Framework for Mitigating Attacks Against Measurement-Based Adaptation Mechanisms in Unstructured Multicast Overlay Networks

  • Author

    Walters, Aaron ; Zage, David ; Rotaru, Cristina Nita

  • Author_Institution
    4tphi Res., Washington, DC
  • Volume
    16
  • Issue
    6
  • fYear
    2008
  • Firstpage
    1434
  • Lastpage
    1446
  • Abstract
    Many multicast overlay networks maintain application-specific performance goals by dynamically adapting the overlay structure when the monitored performance becomes inadequate. This adaptation results in an unstructured overlay where no neighbor selection constraints are imposed. Although such networks provide resilience to benign failures, they are susceptible to attacks conducted by adversaries that compromise overlay nodes. Previous defense solutions proposed to address attacks against overlay networks rely on strong organizational constraints and are not effective for unstructured overlays. In this work, we identify, demonstrate and mitigate insider attacks against measurement-based adaptation mechanisms in unstructured multicast overlay networks. We propose techniques to decrease the number of incorrect adaptations by using outlier detection and limit the impact of malicious nodes by aggregating local information to derive global reputation for each node. We demonstrate the attacks and mitigation techniques through real-life deployments of a mature overlay multicast system.
  • Keywords
    IP networks; multicast communication; telecommunication security; IP multicast; application-specific performance goals; measurement-based adaptation mechanisms; mitigating attacks; organizational constraints; unstructured multicast overlay networks; Adaptivity; insider attacks; overlay networks; security;
  • fLanguage
    English
  • Journal_Title
    Networking, IEEE/ACM Transactions on
  • Publisher
    ieee
  • ISSN
    1063-6692
  • Type

    jour

  • DOI
    10.1109/TNET.2007.912394
  • Filename
    4460573