首页> 外文会议>International Telecommunication Networks and Applications Conference >Detecting Compromised Switches And Middlebox-Bypass Attacks In Service Function Chaining
【24h】

Detecting Compromised Switches And Middlebox-Bypass Attacks In Service Function Chaining

机译:在服务功能链中检测受损的交换机和中间盒绕过攻击

获取原文

摘要

Service Function Chaining (SFC) provides a special capability that defines an ordered list of network services as a virtual chain and makes a network more flexible and manageable. However, SFC is vulnerable to various attacks caused by compromised switches, especially the middlebox-bypass attack. In this paper, we propose a system that can detect not only middlebox-bypass attacks but also other incorrect forwarding actions by compromised switches. The existing solutions to protect SFC against compromised switches and middlebox-bypass attacks can only solve individual problems. The proposed system uses both probe-based and statistics-based methods to check the probe packets with random pre-assigned keys and collect statistics from middleboxes for detecting any abnormal actions in SFC. It is shown that the proposed system takes only 0.08 ms for the packet processing while it prevents SFC from the middlebox-bypass attacks and compromised switches, which is the negligible delay.
机译:服务功能链(SFC)提供了一种特殊功能,该功能将网络服务的有序列表定义为虚拟链,并使网络更加灵活和可管理。但是,SFC容易受到交换机受损造成的各种攻击的影响,尤其是中间盒旁路攻击。在本文中,我们提出了一种系统,该系统不仅可以检测到中间箱旁路攻击,还可以检测到受感染的交换机执行的其他不正确的转发操作。现有的保护SFC不受交换机损坏和中间盒旁路攻击的解决方案只能解决单个问题。提议的系统同时使用基于探测的方法和基于统计的方法来检查具有随机预分配密钥的探测包,并从中间盒收集统计信息以检测SFC中的任何异常动作。结果表明,所提出的系统仅花费0.08毫秒进行数据包处理,同时又防止了SFC受到中间盒旁路攻击和受损的交换机的攻击,而延迟是可以忽略的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号