内容中心网络的内容污染缓解

Igor G. Ribeiro, Antonio A. Rocha, C. Albuquerque, Flavio Guimaraes
{"title":"内容中心网络的内容污染缓解","authors":"Igor G. Ribeiro, Antonio A. Rocha, C. Albuquerque, Flavio Guimaraes","doi":"10.1109/NOF.2016.7810123","DOIUrl":null,"url":null,"abstract":"Content-Centric Networking - CCN is a prominent architectural proposal for the future Internet. Even though CCN design includes a set of security mechanisms in order to to ensure authenticity, integrity and confidentiality of contents, some security threats still exists. One of these threats is content pollution, where malicious users cause legitimate users to retrieve incorrect contents, what, in the worst scenario, can lead to a denial of service attack. To mitigate this problem it was proposed CCNCheck, a mechanism that makes all routers in the network to check the signature of contents according to the same probability, which makes the mechanism's efficiency very topology-dependent. In this paper we propose two different deployment approaches to CCNCheck. The first one splits the network routers into two groups: border router and core routers. These two groups were associated with two different verification probabilities. In the second approach, we let the verification probability in the border routers to vary dynamically, according to the pollution level perceived by the router. We have shown through simulation experiments that these approaches reduce topology dependency, allow users to retrieve the majority of requested contents and reduces the number of polluted messages forwarded in the network core.","PeriodicalId":208097,"journal":{"name":"2016 7th International Conference on the Network of the Future (NOF)","volume":"18 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":"{\"title\":\"Content pollution mitigation for Content-Centric Networking\",\"authors\":\"Igor G. Ribeiro, Antonio A. Rocha, C. Albuquerque, Flavio Guimaraes\",\"doi\":\"10.1109/NOF.2016.7810123\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Content-Centric Networking - CCN is a prominent architectural proposal for the future Internet. Even though CCN design includes a set of security mechanisms in order to to ensure authenticity, integrity and confidentiality of contents, some security threats still exists. One of these threats is content pollution, where malicious users cause legitimate users to retrieve incorrect contents, what, in the worst scenario, can lead to a denial of service attack. To mitigate this problem it was proposed CCNCheck, a mechanism that makes all routers in the network to check the signature of contents according to the same probability, which makes the mechanism's efficiency very topology-dependent. In this paper we propose two different deployment approaches to CCNCheck. The first one splits the network routers into two groups: border router and core routers. These two groups were associated with two different verification probabilities. In the second approach, we let the verification probability in the border routers to vary dynamically, according to the pollution level perceived by the router. We have shown through simulation experiments that these approaches reduce topology dependency, allow users to retrieve the majority of requested contents and reduces the number of polluted messages forwarded in the network core.\",\"PeriodicalId\":208097,\"journal\":{\"name\":\"2016 7th International Conference on the Network of the Future (NOF)\",\"volume\":\"18 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2016-11-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"6\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2016 7th International Conference on the Network of the Future (NOF)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/NOF.2016.7810123\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 7th International Conference on the Network of the Future (NOF)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/NOF.2016.7810123","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6

摘要

内容中心网络(Content-Centric Networking,简称CCN)是未来互联网的重要架构建议。尽管CCN设计包含了一套安全机制,以保证内容的真实性、完整性和保密性,但仍然存在一些安全威胁。其中一种威胁是内容污染,恶意用户导致合法用户检索不正确的内容,在最坏的情况下,可能导致拒绝服务攻击。为了缓解这一问题,提出了CCNCheck机制,该机制使网络中的所有路由器按照相同的概率检查内容的签名,这使得该机制的效率非常依赖于拓扑。在本文中,我们提出了两种不同的CCNCheck部署方法。第一种方法将网络路由器分为两组:边界路由器和核心路由器。这两组与两种不同的验证概率相关联。在第二种方法中,我们让边界路由器中的验证概率根据路由器感知到的污染程度动态变化。我们通过模拟实验表明,这些方法减少了拓扑依赖性,允许用户检索大部分请求的内容,并减少了在网络核心中转发的受污染消息的数量。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Content pollution mitigation for Content-Centric Networking
Content-Centric Networking - CCN is a prominent architectural proposal for the future Internet. Even though CCN design includes a set of security mechanisms in order to to ensure authenticity, integrity and confidentiality of contents, some security threats still exists. One of these threats is content pollution, where malicious users cause legitimate users to retrieve incorrect contents, what, in the worst scenario, can lead to a denial of service attack. To mitigate this problem it was proposed CCNCheck, a mechanism that makes all routers in the network to check the signature of contents according to the same probability, which makes the mechanism's efficiency very topology-dependent. In this paper we propose two different deployment approaches to CCNCheck. The first one splits the network routers into two groups: border router and core routers. These two groups were associated with two different verification probabilities. In the second approach, we let the verification probability in the border routers to vary dynamically, according to the pollution level perceived by the router. We have shown through simulation experiments that these approaches reduce topology dependency, allow users to retrieve the majority of requested contents and reduces the number of polluted messages forwarded in the network core.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信