DoS protection for a pragmatic multiservice network based on programmable networks

  • Authors:
  • Bernardo Alarcos;María Calderón;Marifeli Sedano;Juan R. Velasco

  • Affiliations:
  • Department of Automática, Universidad de Alcalá, Madrid, Spain;Department of Ingeniería Telemática, Universidad Carlos III de Madrid, Madrid;Department of Ingeniería de Sistemas Telemáticos, Universidad Politécnica de Madrid, Madrid, Spain;Department of Automática, Universidad de Alcalá, Madrid, Spain

  • Venue:
  • AN'06 Proceedings of the First IFIP TC6 international conference on Autonomic Networking
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

We propose a scenario of a multiservice network, based on pragmatic ideas of programmable networks. Active routers are capable of processing both active and legacy packets. This scenario is vulnerable to a Denial of Service attack, which consists in inserting false legacy packets into active routers. We propose a mechanism for detecting the injection of fake legacy packets into active routers. This mechanism consists in exchanging accounting information on the traffic between neighboring active routers. The exchange of accounting information must be carried out in a secure way using secure active packets. The proposed mechanism is sensitive to the loss of packets. To deal with this problem some improvements in the mechanism has been proposed. An important issue is the procedure for discharging packets when an attack has been detected. We propose an easy and efficient mechanism that would be improved in future work.