Efficient security mechanisms for overlay multicast-based content distribution

  • Authors:
  • Sencun Zhu;Chao Yao;Donggang Liu;Sanjeev Setia;Sushil Jajodia

  • Affiliations:
  • Department of Computer Science and Engineering and School of Information Sciences and Technology, The Pennsylvania State University, University Park, PA;Center for Secure Information Systems, George Mason University, Fairfax, VA;Department of Computer Science, North Carolina State University, Raleigh, NC;Center for Secure Information Systems, George Mason University, Fairfax, VA;Center for Secure Information Systems, George Mason University, Fairfax, VA

  • Venue:
  • ACNS'05 Proceedings of the Third international conference on Applied Cryptography and Network Security
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper studies the security issues that arise in an overlay multicast architecture where service providers distribute content such as web pages, static and streaming multimedia data, realtime stock quotes, or security updates to a large number of users. In particular, two major security problems of overlay multicast, network access control and group key management, are addressed. We first present a bandwidth-efficient scheme, called CRBR, that seamlessly integrates network access control and group key management. Next we propose a DoS-resilient key distribution scheme, called k-RIP, that delivers updated keys to a large fraction of nodes with high probability even if an attacker can selectively compromise nodes in the multicast data delivery hierarchy and command these compromised nodes to drop keying packets. The proposed schemes do not rely on knowledge of overlay topology, and can scale up to very large overlay networks.