首页> 外文期刊>Optical Switching and Networking >Infrastructure upgrade framework for Content Delivery Networks robust to targeted attacks
【24h】

Infrastructure upgrade framework for Content Delivery Networks robust to targeted attacks

机译:内容交付网络的基础架构升级框架可抵抗目标攻击

获取原文
获取原文并翻译 | 示例

摘要

Content Delivery Networks (CDNs) are crucial for enabling delivery of services that require high capacity and low latency, primarily through geographically-diverse content replication. Optical networks are the only available future-proof technology that meets the reach and capacity requirements of CDNs. However, the underlying physical network infrastructure is vulnerable to various security threats, and the increasing importance of CDNs in supporting vital services intensifies the concerns related to their robustness. Malicious attackers can target critical network elements, thus severely degrading network connectivity and causing large-scale service disruptions. One way in which network operators and cloud computing providers can increase the robustness against malicious attacks is by changing the topological properties of the network through infrastructure upgrades.This work proposes a framework for CDN infrastructure upgrade that performs sparse link and replica addition with the objective of maximizing the content accessibility under targeted link cut attacks. The framework is based on a newly defined content accessibility metric denoted asμ-ACA which allows the network operator to gauge the CDN robustness over a range of attacks with varying intensity. Two heuristics, namely Content-Accessibility-Aware Link Addition Heuristic (CAA-LAH), and Content-Accessibility-Aware Replica Addition Heuristic (CAA-RAH) are developed to perform strategic link and replica placement, respectively, and hamper attackers from disconnecting users from the content even in severe attack scenarios. Extensive experiments on real-world reference network topologies show that the proposed framework effectively increases the CDN robustness by adding a few links or replicas to the network.
机译:内容交付网络(CDN)对于实现交付需要高容量和低延迟的服务至关重要,主要是通过地理上分散的内容复制。光网络是满足CDN的覆盖范围和容量要求的唯一可用的面向未来的技术。但是,底层的物理网络基础结构容易受到各种安全威胁的影响,而CDN在支持重要服务方面的重要性日益提高,加剧了对其健壮性的担忧。恶意攻击者可以将关键网络元素作为攻击目标,从而严重破坏网络连接性并导致大规模服务中断。网络运营商和云计算提供商可以增强抵御恶意攻击的能力的一种方法是通过基础架构升级来更改网络的拓扑属性。此工作提出了CDN基础架构升级的框架,该框架执行稀疏链接和副本添加,目的是:在有针对性的链接切断攻击下最大化内容的可访问性。该框架基于表示为μ-ACA的新定义的内容可访问性度量,该度量使网络运营商可以在各种强度变化的攻击范围内评估CDN的鲁棒性。开发了两种启发式方法,分别是“内容可访问性感知的链接添加启发式(CAA-LAH)”和“内容可访问性感知的副本附加启发式(CAA-RAH)”,以分别执行战略链接和副本放置,并阻止攻击者断开用户连接甚至在严重的攻击情形下也不会出现这种情况在现实世界中参考网络拓扑的大量实验表明,该框架通过向网络添加一些链接或副本,有效地提高了CDN的健壮性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号