DocumentCode
730998
Title
Source authentication and path validation with orthogonal network capabilities
Author
Hao Cai ; Wolf, Tilman
Author_Institution
Dept. of Electr. & Comput. Eng., Univ. of Massachusetts, Amherst, MA, USA
fYear
2015
fDate
April 26 2015-May 1 2015
Firstpage
111
Lastpage
112
Abstract
In-network source authentication and path validation are fundamental primitives to construct security mechanisms such as DDoS mitigation, path compliance, packet attribution, or protection against flow redirection. Unfortunately, most of the existing approaches are based on cryptographic techniques. The high computational cost of cryptographic operations makes these techniques fall short in the data plane of the network, where potentially every packet needs to be checked at Gigabit per second link rates in the future Internet. In this paper, we propose a new protocol, which uses a set of orthogonal sequences as credentials, to solve this problem, which enables a low overhead of verification in routers. Our evaluation of a prototype experiment demonstrates the fast verification speed and low storage consumption of our protocol, while providing reasonable security properties.
Keywords
Internet; authorisation; computer network security; cryptographic protocols; Gigabit per second link rates; Internet; cryptographic operations; in-network source authentication; orthogonal network capabilities; path validation; Authentication; Conferences; Cryptography; Optimized production technology; Routing protocols;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Communications Workshops (INFOCOM WKSHPS), 2015 IEEE Conference on
Conference_Location
Hong Kong
Type
conf
DOI
10.1109/INFCOMW.2015.7179368
Filename
7179368
Link To Document