Resilience Evaluation of Multi-Path Routing against Network Attacks and Failures

被引:7
|
作者
An, Hyok [1 ]
Na, Yoonjong [1 ]
Lee, Heejo [1 ]
Perrig, Adrian [2 ]
机构
[1] Korea Univ, Dept Comp Sci & Engn, Seoul 02841, South Korea
[2] Swiss Fed Inst Technol, Dept Comp Sci, CH-8092 Zurich, Switzerland
关键词
network security; multi-path routing; high availability; Internet-scale evaluation; SELF-AWARE NETWORKS;
D O I
10.3390/electronics10111240
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The current state of security and availability of the Internet is far from being commensurate with its importance. The number and strength of DDoS attacks conducted at the network layer have been steadily increasing. However, the single path (SP) routing used in today's Internet lacks a mitigation scheme to rapidly recover from network attacks or link failure. In case of a link failure occurs, it can take several minutes until failover. In contrast, multi-path routing can take advantage of multiple alternative paths and rapidly switch to another working path. According to the level of available path control, we classfy the multi-path routing into two types, first-hop multi-path (FMP) and multi-hop multi-path (MMP) routing. Although FMP routing supported by networks, such as SD-WAN, shows marginal improvements over the current SP routing of the Internet, MMP routing supported by a global Internet architecture provides strong improvement under network attacks and link failure. MMP routing enables changing to alternate paths to mitigate the network problem in other hops, which cannot be controlled by FMP routing. To show this comparison with practical outcome, we evaluate network performance in terms of latency and loss rate to show that MMP routing can mitigate Internet hazards and provide high availability on global networks by 18 participating ASes in six countries. Our evaluation of global networks shows that, if network attacks or failures occur in other autonomous systems (ASes) that FMP routing cannot avoid, it is feasible to deal with such problems by switching to alternative paths by using MMP routing. When the global evaluation is under a transit-link DDoS attack, the loss rates of FMP that pass the transit-link are affected significantly by a transit-link DDoS attack, but the other alternative MMP paths show stable status under the DDoS attack with proper operation.
引用
收藏
页数:16
相关论文
共 50 条
  • [31] A novel multi-path routing protocol
    Bai, XL
    Matuszewski, M
    Liu, SP
    Kantola, R
    NETWORKING AND MOBILE COMPUTING, PROCEEDINGS, 2005, 3619 : 732 - 741
  • [32] MIRO: Multi-path Interdomain ROuting
    Xu, Wen
    Rexford, Jennifer
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2006, 36 (04) : 171 - 182
  • [33] Online multi-path routing in a maze
    Ruehrup, Stefan
    Schindelhauer, Christian
    ALGORITHMS AND COMPUTATION, PROCEEDINGS, 2006, 4288 : 650 - +
  • [34] A reliable multi-path routing protocol for ad-hoc network
    Chou, LP
    Hsu, CC
    Wu, F
    10TH IEEE INTERNATIONAL CONFERENCE ON NETWORKS (ICON 2002), PROCEEDINGS, 2002, : 305 - 310
  • [35] Novel multi-path routing scheme for UWB Ad hoc network
    XU PingpingYANG CaiyuSONG ShuqingBI GuangguoNational Mobile Communication Research LaboratorySoutheast UniversityNanjing China
    通信学报, 2005, (10) : 89 - 96
  • [36] Adaptive multi-path routing in mobile ad hoc network based on path segment
    Wu, Da-Peng
    Zhen, Yan
    Wu, Mu-Qing
    Dianzi Yu Xinxi Xuebao/Journal of Electronics and Information Technology, 2009, 31 (03): : 698 - 701
  • [37] Design of multi-path data routing algorithm based on network reliability
    Dasgupta, Mou
    Biswas, G. P.
    COMPUTERS & ELECTRICAL ENGINEERING, 2012, 38 (06) : 1433 - 1443
  • [38] Detecting Distributed Signature-based Intrusion: The Case of Multi-Path Routing Attacks
    Ma, Jiefei
    Le, Franck
    Russo, Alessandra
    Lobo, Jorge
    2015 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (INFOCOM), 2015,
  • [39] Path Selection Criteria for Multi-path Routing in Wireless Ad-hoc Network
    Cikovskis, Lauris
    Slaidins, Ilmars
    2015 ADVANCES IN WIRELESS AND OPTICAL COMMUNICATIONS (RTUWO), 2015, : 58 - 61
  • [40] Secure multi-path routing for Internet of Things based on trust evaluation
    Xiao J.
    Chang C.
    Ma Y.
    Yang C.
    Yuan L.
    Mathematical Biosciences and Engineering, 2024, 21 (02) : 3335 - 3363