Verlagslink: | https://ieeexplore.ieee.org/document/6663520/ | Titel: | Lessons from the past: why data-driven states harm future information-centric networking | Sprache: | Englisch | Autorenschaft: | Wählisch, Matthias Schmidt, Thomas C. Vahlenkamp, Markus |
Schlagwörter: | security; vulnerability; performance evaluation; content-centric routing; denial of service (DoS) | Erscheinungsdatum: | 2013 | Verlag: | IEEE | Teil der Schriftenreihe: | 2013 IFIP Networking Conference : Brooklyn, New York, USA, 22 - 24 May 2013 | Konferenz: | IFIP Technical Committee on Communication Systems (TC6) International Conference on Networking 2013 | Zusammenfassung: | Information-centric networking (ICN) raises data objects to first class routable entities in the network and changes the Internet paradigm from host-centric connectivity to data-oriented publish/subscribe. We revisit the data-centric paradigm from the perspective of security and resilience and question its applicability in an open, widely distributed routing and forwarding service. Current concepts of content routing are built on data-driven protocol events and thereby introduce a strong coupling of the control to the data plane in the underlying routing infrastructure. In this paper, we explore the vulnerability of the distribution backbone. Based on a straight-forward analytical model we show that local systems cannot be protected from the threats of data-driven state management on an Internet scale. By practical evaluations using the example of the CCNx implementation, we further analyze threats to stability and performance of a data-driven infrastructure that refrains from separating the control from the data plane. We identify intrinsic attack vectors, as well as possibilities and limitations to mitigate them. Our overall findings suggest that major architectural refinements are required prior to global ICN deployment in the real world. |
URI: | http://hdl.handle.net/20.500.12738/1339 | ISBN: | 978-1-4799-2779-1 978-3-901882-55-5 |
Begutachtungsstatus: | Unbekannt / keine Angabe | Einrichtung: | Department Informatik Fakultät Technik und Informatik |
Dokumenttyp: | Konferenzveröffentlichung |
Enthalten in den Sammlungen: | Publications without full text |
Zur Langanzeige
Volltext ergänzen
Feedback zu diesem Datensatz
Export
Alle Ressourcen in diesem Repository sind urheberrechtlich geschützt.