Title :
Accountable File Indexing against DDoS Attacks in Peer-to-Peer Networks
Author :
Lou, Xiaosong ; Hwang, Kai ; Hu, Yue
Author_Institution :
Comput. Eng. Group, Univ. of Southern California, Los Angles, CA, USA
Abstract :
Peer-to-peer (P2P) networks are vulnerable from malicious attacks by anonymous users. By populating unprotected peers with poisoned file indices, the attacker can launch a poisoning DDoS (distributed denial-of-service) attacks on any host in the network. We solve this security problem with identity-based signatures contained in file indexes to establish peer accountability. We prove that index accountability can effectively block index-poisoning DDoS attacks in any open P2P environment. A new Accountable Indexing Protocol (AIP) is proposed to enforce peer accountability. This protocol is applicable to all P2P file-sharing networks, either structured or unstructured. The system allows gradual transition of peers to become AIP-enabled. We develop an analytical model to characterize the poison propagation patterns. The poisoning model is validated by simulated AIP experiments on large-scale P2P networks over one million of peer nodes.
Keywords :
indexing; peer-to-peer computing; telecommunication security; DDoS attacks; P2P file sharing networks; accountable file indexing; accountable indexing protocol; distributed denial-of-service; identity based signatures; index accountability; malicious attacks; peer-to-peer networks; poisoned file indices; Computer crime; Cryptographic protocols; Identity-based encryption; Indexing; Lead; Measurement; Network address translation; Peer to peer computing; Protection; Security;
Conference_Titel :
Global Telecommunications Conference, 2009. GLOBECOM 2009. IEEE
Conference_Location :
Honolulu, HI
Print_ISBN :
978-1-4244-4148-8
DOI :
10.1109/GLOCOM.2009.5425979