A Detection Mechanism for Cache Pollution Attack in Named Data Network Architecture

被引:6
|
作者
Hidouri, Abdelhak [1 ]
Touati, Haifa [1 ]
Hadded, Mohamed [2 ]
Hajlaoui, Nasreddine [1 ]
Muhlethaler, Paul [3 ]
机构
[1] Univ Gabes, Hatem Bettaher IResCoMath Lab, Gabes, Tunisia
[2] IRT SystemX, Palaiseau, France
[3] INRIA, Paris, France
关键词
D O I
10.1007/978-3-030-99584-3_38
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Basic Named Data Networks (NDN) security mechanisms, rely on two main key features. The first one is the caching mechanism where it manages to minimize both the bandwidth usage and the data retrieval delay all along with congestion avoidance by storing, in the intermediate routers, the contents recently demanded to quickly serve future consumers' requests. The second key feature is the NDN security which stands on its foundation by signing each Data as soon as it released by the Producer and gets verified by each requesting consumer so that it makes it resilient to most attacks that affect the integrity of such content and the privacy of its end points. However, the availability of the Data in the cache of the CS allows the malicious consumers to perform several attacks such as Cache Pollution Attack (CPA) which is easy to implement and extremely effective. As a result, it makes the data on the cache unavailable for legitimate consumers and increases its retrieval delay. In this paper, we propose a new detection mechanism of CPA called ICAN (Intrusion detection system for CPA attack in NDN architecture) based on several metrics such as Average Cache Hit Ratio, Average Interest Inter-Arrival Time, Hop Count and Prefix variation. We assess by simulation, using the NDNSim framework, the efficiency of our mechanism and the choice of the used parameters. Finally, we elaborate a qualitative comparison between our proposed solution and the state-of-the-art mechanisms.
引用
收藏
页码:435 / 446
页数:12
相关论文
共 50 条
  • [21] Improving NDN Resilience: A Novel Mitigation Mechanism Against Cache Pollution Attack
    Hidouri, Abdelhak
    Touati, Haifa
    Hadded, Mohamed
    Hajlaoui, Nasreddine
    Muhlethaler, Paul
    Bouzefrane, Samia
    20TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE, IWCMC 2024, 2024, : 1564 - 1569
  • [22] Named data network dynamic cache placement strategy based on programmable data plane
    Hou, Saifeng
    Hu, Yuxiang
    Tian, Le
    IET NETWORKS, 2023, 12 (01) : 27 - 35
  • [23] Cache nFace: a simple countermeasure for the producer-consumer collusion attack in Named Data Networking
    Nasserala, Andre
    Bastos, Ian Vilar
    Moraes, Igor Monteiro
    ANNALS OF TELECOMMUNICATIONS, 2019, 74 (3-4) : 125 - 137
  • [24] Cache nFace: a simple countermeasure for the producer-consumer collusion attack in Named Data Networking
    André Nasserala
    Ian Vilar Bastos
    Igor Monteiro Moraes
    Annals of Telecommunications, 2019, 74 : 125 - 137
  • [25] In-network Cache Size Allocation for Video Streaming on Named Data Networking
    Zhang, Yuanzun
    Tan, Xiaobin
    Li, Weiping
    PROCEEDINGS OF 2017 VI INTERNATIONAL CONFERENCE ON NETWORK, COMMUNICATION AND COMPUTING (ICNCC 2017), 2017, : 18 - 23
  • [26] Prevention of Timing Attack in Software Defined Named Data Network with VANETs
    Arsalan, Ahmad
    Rehman, Rana Asif
    2018 INTERNATIONAL CONFERENCE ON FRONTIERS OF INFORMATION TECHNOLOGY (FIT 2018), 2018, : 247 - 252
  • [27] Hybrid communication architecture in VANETs via named data network
    Raissi, Khadija
    Ben Gouissem, Bechir
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2021, 34 (11)
  • [28] A Survey on Detection and Mitigation of Interest Flooding Attack in Named Data Networking
    Rai, Sandesh
    Dhakal, Dependra
    ADVANCED COMPUTATIONAL AND COMMUNICATION PARADIGMS, VOL 2, 2018, 706 : 523 - 531
  • [29] Research on Detection Method of Interest Flooding Attack in Named Data Networking
    Xu, Yabin
    Gu, Peiyuan
    Xu, Xiaowei
    INTELLIGENT AUTOMATION AND SOFT COMPUTING, 2021, 30 (01): : 113 - 127
  • [30] Detection of Cache Pollution Attack Based on Ensemble Learning in ICN-Based VANET
    Yao, Lin
    Zheng, Zhaolong
    Wang, Xin
    Zeng, Yujie
    Wu, Guowei
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (04) : 3287 - 3298