I Know if the Journey Changes: Flexible Source and Path Validation

Fan Yang, Ke Xu, Qi Li, Rongxing Lu, Bo Wu, Tong Zhang, Yi Zhao, Meng Shen

科研成果: 书/报告/会议事项章节会议稿件同行评审

8 引用 (Scopus)

摘要

No matter from the perspective of detection or defense, source and path validations are fundamentally primitive in constructing security mechanisms to greatly enhance network immunity in the face of malicious attacks, such as injection, traffic hijacking and hidden threats. However, existing works for source and path verification still impose a non-trivial operational overhead and lack adjustment capability for path dynamic changes. In this paper, we propose a flexible and convenient source and path validation protocol called PSVM, which uses an authentication structure PIC composed of ordered pieces to carry out packet verification. Specifically, in the basic PSVM protocol, PIC (related to cryptographic computation) in the packet header does not require any update during packet verification, which thus enables a lower processing overhead in routers. To cope with the challenge of path policy changes in the running protocol, the dynamic PSVM protocol supports controllable adjustment and migration, especially in the case of avoiding a malicious node or region. Our evaluation of a prototype experiment on Click demonstrates that the verification efficiency of PSVM is barely influenced by payload size or path length. Compared to the baseline of normal IP routing, the throughput reduction ratio of the basic PSVM is about 13%, which is much better than 28% of existing best solution Origin and Path Trace (OPT). In addition, for a 35-hop path with 30 pieces of PIC needed to be adjusted in dynamic PSVM, the throughput reduction ratio of routing cross node performing the adjustment operation after normal verification is only 2.4 %.

源语言英语
主期刊名2020 IEEE/ACM 28th International Symposium on Quality of Service, IWQoS 2020
出版商Institute of Electrical and Electronics Engineers Inc.
ISBN(电子版)9781728168876
DOI
出版状态已出版 - 6月 2020
已对外发布
活动28th IEEE/ACM International Symposium on Quality of Service, IWQoS 2020 - Hangzhou, 中国
期限: 15 6月 202017 6月 2020

出版系列

姓名2020 IEEE/ACM 28th International Symposium on Quality of Service, IWQoS 2020

会议

会议28th IEEE/ACM International Symposium on Quality of Service, IWQoS 2020
国家/地区中国
Hangzhou
时期15/06/2017/06/20

指纹

探究 'I Know if the Journey Changes: Flexible Source and Path Validation' 的科研主题。它们共同构成独一无二的指纹。

引用此