We use cookies to improve your experience with our site.

命名数据网络中的安全攻击

Security Attacks in Named Data Networking: A Review and Research Directions

  • 摘要: 当前网络中,大量流量包含音频,视频和图片等数据。内容的安全共享是件复杂的事情。现有安全方案不是保护数据而是保护通信端点。命名数据网络(NDN)通过强制数据发布者对数据签名来保护数据。任何用户可以通过使用发布者的公共秘钥验证数据。NDN由于其自身新的架构,对TCP/IP模型中可能存在的安全攻击具有灵活应变能力。然而,在NDN中可能存在新的攻击类型。本文综述了NDN中最具影响力的安全攻击类型,包括兴趣洪水攻击、缓存隐私攻击、缓存污染攻击,和内容中毒攻击。根据攻击行为,每一次攻击都被分类,并探讨它的检测技术、攻击对策,以及受影响的参数。本文试图帮助此领域的研究者收集NDN领域知识。此外,本文提出了一些开放的研究问题待研究者解决。

     

    Abstract: Contents such as audios, videos, and images, contribute most of the Internet traffic in the current paradigm. Secure content sharing is a tedious issue. The existing security solutions do not secure data but secure the communicating endpoints. Named data networking (NDN) secures the data by enforcing the data publisher to sign the data. Any user can verify the data by using the public key of the publisher. NDN is resilient to most of the probable security attacks in the TCP/IP model due to its new architecture. However, new types of attacks are possible in NDN. This article surveys the most significant security attacks in NDN such as interest flooding attacks, cache privacy attacks, cache pollution attacks, and content poisoning attacks. Each attack is classified according to their behavior and discussed for their detection techniques, countermeasures, and the affected parameters. The article is an attempt to help new researchers in this area to gather the domain knowledge of NDN. The article also provides open research issues that could be addressed by researchers.

     

/

返回文章
返回