• DocumentCode
    730998
  • Title

    Source authentication and path validation with orthogonal network capabilities

  • Author

    Hao Cai ; Wolf, Tilman

  • Author_Institution
    Dept. of Electr. & Comput. Eng., Univ. of Massachusetts, Amherst, MA, USA
  • fYear
    2015
  • fDate
    April 26 2015-May 1 2015
  • Firstpage
    111
  • Lastpage
    112
  • Abstract
    In-network source authentication and path validation are fundamental primitives to construct security mechanisms such as DDoS mitigation, path compliance, packet attribution, or protection against flow redirection. Unfortunately, most of the existing approaches are based on cryptographic techniques. The high computational cost of cryptographic operations makes these techniques fall short in the data plane of the network, where potentially every packet needs to be checked at Gigabit per second link rates in the future Internet. In this paper, we propose a new protocol, which uses a set of orthogonal sequences as credentials, to solve this problem, which enables a low overhead of verification in routers. Our evaluation of a prototype experiment demonstrates the fast verification speed and low storage consumption of our protocol, while providing reasonable security properties.
  • Keywords
    Internet; authorisation; computer network security; cryptographic protocols; Gigabit per second link rates; Internet; cryptographic operations; in-network source authentication; orthogonal network capabilities; path validation; Authentication; Conferences; Cryptography; Optimized production technology; Routing protocols;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Communications Workshops (INFOCOM WKSHPS), 2015 IEEE Conference on
  • Conference_Location
    Hong Kong
  • Type

    conf

  • DOI
    10.1109/INFCOMW.2015.7179368
  • Filename
    7179368