• DocumentCode
    1472635
  • Title

    Capacity and Robustness Tradeoffs in Bloom Filters for Distributed Applications

  • Author

    Moreira, Marcelo Duffles Donato ; Laufer, Rafael Pinaud ; Velloso, Pedro Braconnot ; Duarte, Otto Carlos M B

  • Author_Institution
    Intelie Res. Lab., Univ. Fed. do Rio de Janeiro (UFRJ), Rio de Janeiro, Brazil
  • Volume
    23
  • Issue
    12
  • fYear
    2012
  • Firstpage
    2219
  • Lastpage
    2230
  • Abstract
    The Bloom filter is a space-efficient data structure often employed in distributed applications to save bandwidth during data exchange. These savings, however, come at the cost of errors in the shared data, which are usually assumed low enough to not disrupt the application. We argue that this assumption does not hold in a more hostile environment, such as the Internet, where attackers can send a carefully crafted Bloom filter in order to break the application. In this paper, we propose the concatenated Bloom filter (CBF), a robust Bloom filter that prevents the attacker from interfering on the shared information, protecting the application data while still providing space efficiency. Instead of using a single large filter, the CBF concatenates small subfilters to improve both the filter robustness and capacity. We propose three CBF variants and provide analytical results that show the efficacy of the CBF for different scenarios. We also evaluate the performance of our filter in an IP traceback application and simulation results confirm the effectiveness of the proposed mechanism in the face of attackers.
  • Keywords
    data structures; distributed processing; security of data; CBF; IP traceback application; Internet; application data protection; bandwidth saving; data exchange; distributed applications; filter capacity improvement; filter robustness improvement; robust concatenated Bloom filter; space-efficient data structure; Distributed processing; Error analysis; Filters; Network security; Probability; Radiation detectors; Robustness; Servers; Bloom filters; IP traceback; distributed applications; security;
  • fLanguage
    English
  • Journal_Title
    Parallel and Distributed Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1045-9219
  • Type

    jour

  • DOI
    10.1109/TPDS.2012.87
  • Filename
    6171165