Overlay authocast: distributed sender authentication in overlay multicast

  • Authors:
  • Matthias Wählisch;Thomas C. Schmidt;Gabriel Hege

  • Affiliations:
  • Freie Universität Berlin, Institut für Informatik;HAW Hamburg, Dept. Informatik;HAW Hamburg, Dept. Informatik

  • Venue:
  • INFOCOM'09 Proceedings of the 28th IEEE international conference on Computer Communications Workshops
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

Multicast services raise significant operational and security challenges not only when deployed on the Internet layer, but also in overlay networks. Large P2P groups as emerging from IPTV applications may be abused by unwanted traffic or denial of service attacks through amplified flooding. In this paper, we introduce a distributed, autonomously verifiable scheme for multicast sender authentication, which does not depend on pre-established trust relationships. Based on cryptographic identifiers and passport packets, any overlay peer is enabled to verify the origin of data prior to forwarding and to repel its misuse. Dynamic ingress filtering and individually established gradual trust allow for a lightweight protection of the distribution system in structured overlays.