Controlling the effects of anomalous ARP behaviour on ethernet networks

  • Authors:
  • D. Ármannsson;G. Hjálmtýsson;P. D. Smith;L. Mathy

  • Affiliations:
  • Reykjavík University;Reykjavík University;Lancaster University;Lancaster University

  • Venue:
  • CoNEXT '05 Proceedings of the 2005 ACM conference on Emerging network experiment and technology
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

There are a large number of large-scale Ethernet-based local and metropolitan area networks in use. A significant reason for this prolific deployment is the relatively simple manner in which they can be configured and deployed. A critical service on these networks, that epitomises the simple nature of Ethernet, is the Address Resolution Protocol (ARP). This protocol is used to determine the link-layer address of a host given its network-layer identifier, and uses the intrinsic broadcast capability of Ethernet to determine these mappings. In this paper, we present an analysis of ARP behaviour on three sizable local area networks and show that due to poorly configured or malicious software (e.g. viruses) on hosts, performance issues could arise because of ARP. We also propose a scheme that can be used to manage the effect of the problems identified in our analysis.