论文标题
命名数据网络中的兴趣洪水攻击:现有解决方案,开放问题,需求和未来方向的调查(扩展版)
Interest Flooding Attacks in Named Data Networking: Survey of Existing Solutions, Open Issues, Requirements and Future Directions (Extended version)
论文作者
论文摘要
命名的数据网络(NDN)是以信息为中心网络的愿景的明显实现。 NDN体系结构采用基于名称的路由和独立于位置的数据检索。除其他重要功能外,NDN还集成了安全机制,并专注于保护内容而不是通信渠道。随着新建筑的新威胁,NDN也不例外。 NDN是新网络攻击(例如兴趣洪水攻击(IFAS))的潜在目标。攻击者利用IFA在NDN启动(D)DOS攻击。文献中已经提出了许多IFA检测和缓解解决方案。但是,到目前为止,还没有对这些解决方案进行的全面审查研究。因此,在本文中,我们提出了对各种IFA的调查,并对所有相关建议的解决方案进行了详细的比较研究,以作为对IFA的反测量。我们还审查了对IFA解决方案的完整有效IFA解决方案的要求,并通过一系列攻击方案来查明IFA检测和缓解机制遇到的各种问题。最后,在这项调查中,我们对有关IFA的开放问题和未来的研究指示进行了分析。该手稿由ACM计算调查中发表的论文的扩展版本组成:https://dl.acm.org/doi/10.1145/3539730。
Named Data Networking (NDN) is a prominent realization of the vision of Information-Centric Networking. The NDN architecture adopts name-based routing and location-independent data retrieval. Among other important features, NDN integrates security mechanisms and focuses on protecting the content rather than the communications channels. Along with a new architecture come new threats and NDN is no exception. NDN is a potential target for new network attacks such as Interest Flooding Attacks (IFAs). Attackers take advantage of IFA to launch (D)DoS attacks in NDN. Many IFA detection and mitigation solutions have been proposed in the literature. However, there is no comprehensive review study of these solutions that has been proposed so far. Therefore, in this paper, we propose a survey of the various IFAs with a detailed comparative study of all the relevant proposed solutions as counter-measures against IFAs. We also review the requirements for a complete and efficient IFA solution and pinpoint the various issues encountered by IFA detection and mitigation mechanisms through a series of attack scenarios. Finally, in this survey, we offer an analysis of the open issues and future research directions regarding IFAs. This manuscript consists of an extended version of the paper published in ACM Computing Surveys: https://dl.acm.org/doi/10.1145/3539730.