Operational fault detection in network infrastructure

  • Authors:
  • T. C. Leung;K. H. Yeung;K. Y. Wong

  • Affiliations:
  • City University of Hong Kong;City University of Hong Kong;City University of Hong Kong

  • Venue:
  • ICCOM'08 Proceedings of the 12th WSEAS international conference on Communications
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

Network infrastructure security concerns the protection of a network instead of the confidentiality and integrity of packet content. Most of the existing methods require the modifications of routers or require them to run background processes. These kinds of methods are less reliable because they rely on the cooperation of routers in the network to detect any malicious router in the same network. In this paper, we propose to protect the network infrastructure by running a set of detection routines in the boundary firewalls of the network infrastructure. These routines can detect various kinds of network attacks without the assistance of routers. The routines use the hop-by-hop technique to send a number of testing packets to the routers in the network one by one. By observing the packet responds, the routines are able to identify the attacks to a network infrastructure (if there is any), namely, packet drop, packet misroute, or routing loop.