Publisher URL: | https://ieeexplore.ieee.org/document/6663520/ | Title: | Lessons from the past: why data-driven states harm future information-centric networking | Language: | English | Authors: | Wählisch, Matthias Schmidt, Thomas C. Vahlenkamp, Markus |
Keywords: | security; vulnerability; performance evaluation; content-centric routing; denial of service (DoS) | Issue Date: | 2013 | Publisher: | IEEE | Part of Series: | 2013 IFIP Networking Conference : Brooklyn, New York, USA, 22 - 24 May 2013 | Conference: | IFIP Technical Committee on Communication Systems (TC6) International Conference on Networking 2013 | Abstract: | Information-centric networking (ICN) raises data objects to first class routable entities in the network and changes the Internet paradigm from host-centric connectivity to data-oriented publish/subscribe. We revisit the data-centric paradigm from the perspective of security and resilience and question its applicability in an open, widely distributed routing and forwarding service. Current concepts of content routing are built on data-driven protocol events and thereby introduce a strong coupling of the control to the data plane in the underlying routing infrastructure. In this paper, we explore the vulnerability of the distribution backbone. Based on a straight-forward analytical model we show that local systems cannot be protected from the threats of data-driven state management on an Internet scale. By practical evaluations using the example of the CCNx implementation, we further analyze threats to stability and performance of a data-driven infrastructure that refrains from separating the control from the data plane. We identify intrinsic attack vectors, as well as possibilities and limitations to mitigate them. Our overall findings suggest that major architectural refinements are required prior to global ICN deployment in the real world. |
URI: | http://hdl.handle.net/20.500.12738/1339 | ISBN: | 978-1-4799-2779-1 978-3-901882-55-5 |
Review status: | Unknown / not specified | Institute: | Department Informatik Fakultät Technik und Informatik |
Type: | Chapter/Article (Proceedings) |
Appears in Collections: | Publications without full text |
Show full item record
Add Files to Item
Note about this record
Export
Items in REPOSIT are protected by copyright, with all rights reserved, unless otherwise indicated.