Resilience Evaluation of Multi-Path Routing against Network Attacks and Failures

被引:7
|
作者
An, Hyok [1 ]
Na, Yoonjong [1 ]
Lee, Heejo [1 ]
Perrig, Adrian [2 ]
机构
[1] Korea Univ, Dept Comp Sci & Engn, Seoul 02841, South Korea
[2] Swiss Fed Inst Technol, Dept Comp Sci, CH-8092 Zurich, Switzerland
关键词
network security; multi-path routing; high availability; Internet-scale evaluation; SELF-AWARE NETWORKS;
D O I
10.3390/electronics10111240
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The current state of security and availability of the Internet is far from being commensurate with its importance. The number and strength of DDoS attacks conducted at the network layer have been steadily increasing. However, the single path (SP) routing used in today's Internet lacks a mitigation scheme to rapidly recover from network attacks or link failure. In case of a link failure occurs, it can take several minutes until failover. In contrast, multi-path routing can take advantage of multiple alternative paths and rapidly switch to another working path. According to the level of available path control, we classfy the multi-path routing into two types, first-hop multi-path (FMP) and multi-hop multi-path (MMP) routing. Although FMP routing supported by networks, such as SD-WAN, shows marginal improvements over the current SP routing of the Internet, MMP routing supported by a global Internet architecture provides strong improvement under network attacks and link failure. MMP routing enables changing to alternate paths to mitigate the network problem in other hops, which cannot be controlled by FMP routing. To show this comparison with practical outcome, we evaluate network performance in terms of latency and loss rate to show that MMP routing can mitigate Internet hazards and provide high availability on global networks by 18 participating ASes in six countries. Our evaluation of global networks shows that, if network attacks or failures occur in other autonomous systems (ASes) that FMP routing cannot avoid, it is feasible to deal with such problems by switching to alternative paths by using MMP routing. When the global evaluation is under a transit-link DDoS attack, the loss rates of FMP that pass the transit-link are affected significantly by a transit-link DDoS attack, but the other alternative MMP paths show stable status under the DDoS attack with proper operation.
引用
收藏
页数:16
相关论文
共 50 条
  • [22] Study of network survivability based on multi-path routing mechanism
    Song Huang
    Yong Xu
    Ling Zhang
    Science in China Series F: Information Sciences, 2008, 51 : 1898 - 1907
  • [23] Study of network survivability based on multi-path routing mechanism
    Huang Song
    Xu Yong
    Zhang Ling
    SCIENCE IN CHINA SERIES F-INFORMATION SCIENCES, 2008, 51 (11): : 1898 - 1907
  • [24] On the hardness of minimum cost blocking attacks on multi-path wireless routing protocols
    Duan, Qi
    Virendra, Mohit
    Upadhyaya, Sharnbhu
    2007 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-14, 2007, : 4925 - 4930
  • [25] DoubleCheck: Multi-path Verification Against Man-in-the-Middle Attacks
    Alicherry, Mansoor
    Keromytis, Angelos D.
    ISCC: 2009 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, VOLS 1 AND 2, 2009, : 556 - 562
  • [26] A Novel Network Coding and Multi-path Routing Approach for Wireless Sensor Network
    Baolin Sun
    Chao Gui
    Ying Song
    Hua Chen
    Wireless Personal Communications, 2014, 77 : 87 - 99
  • [27] A Novel Network Coding and Multi-path Routing Approach for Wireless Sensor Network
    Sun, Baolin
    Gui, Chao
    Song, Ying
    Chen, Hua
    WIRELESS PERSONAL COMMUNICATIONS, 2014, 77 (01) : 87 - 99
  • [28] Distributed multi-path and multi-objective routing for network operation and dimensioning
    Fournie, Laurent
    Hong, Dohy
    Randriamasy, Sabine
    2006 2ND CONFERENCE ON NEXT GENERATION INTERNET DESIGN AND ENGINEERING, 2006, : 17 - +
  • [29] Implementation of Multi-Path Energy Routing
    Mishra, Deepak
    Kaushik, K.
    De, Swades
    Basagni, Stefano
    Chowdhury, Kaushik
    Jana, Soumya
    Heinzelman, Wendi
    2014 IEEE 25TH ANNUAL INTERNATIONAL SYMPOSIUM ON PERSONAL, INDOOR, AND MOBILE RADIO COMMUNICATION (PIMRC), 2014, : 1834 - 1839
  • [30] A Dynamic Multi-path Routing for VANET
    Yuan, Z. Y.
    Wei, D.
    Zhu, J. Q.
    Hou, Y. J.
    Li, M.
    Sun, T.
    INTERNATIONAL CONFERENCE ON AUTOMATION, MECHANICAL AND ELECTRICAL ENGINEERING (AMEE 2015), 2015, : 766 - 773