DocumentCode :
2446464
Title :
Network fault localization with small TCB
Author :
Zhang, Xin ; Zhou, Zongwei ; Hasker, Geoff ; Perrig, Adrian ; Gligor, Virgil
fYear :
2011
fDate :
17-20 Oct. 2011
Firstpage :
143
Lastpage :
154
Abstract :
Clear evidence indicates the existence of compromised routers in ISP and enterprise networks. Fault localization (FL) protocols enable a network to localize specific links of compromised routers sabotaging network data delivery and are recognized as an essential means to enhancing network availability in the face of targeted attacks. However, theoretically proven lower bounds have shown that secure FL protocols in the current network infrastructure inevitably incur prohibitive overhead. We observe the current limits are due to a lack of trust relationships among network nodes. We demonstrate that we can achieve much higher FL efficiency by leveraging trusted computing technology to design a trusted network-layer architecture, Tru eN et, with a small Trusted Computing Base (TCB). We intend Tru e N e t to serve as a case study that demonstrates trusted computing´s ability in yielding tangible and measurable benefits for secure network protocol designs.
Keywords :
routing protocols; telecommunication security; ISP; TrueNet; enterprise networks; fault localization protocols; network fault localization; network nodes; routers; secure FL protocols; secure network protocol; trusted computing base; Monitoring; Network topology; Routing; Routing protocols; Security; Software;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Network Protocols (ICNP), 2011 19th IEEE International Conference on
Conference_Location :
Vancouver, BC
Print_ISBN :
978-1-4577-1392-7
Type :
conf
DOI :
10.1109/ICNP.2011.6089046
Filename :
6089046
Link To Document :
بازگشت