See this document in CiteSeerX!

Fatih: Detecting and Isolating Malicious Routers  (Make Corrections)  
Alper Tugay Mizrak, Yu-Chung Cheng, Keith Marzullo, Stefan Savage



  Home/Search   Context   Related

 
View or download:
ucsd.edu/~savage/papers/DSN05.pdf
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  ucsd.edu/groups/sysnet/pubs (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Network routers occupy a key role in modern data transport and consequently are attractive targets for attackers. By manipulating, diverting or dropping packets arriving at a compromised router, an attacker can trivially mount denial-of-service, surveillance or man-in-the-middle attacks on end host systems. In this paper, we specify the problem of detecting routers with incorrect packet forwarding behavior and we explore the design space of protocols that implement such a detector. We further... (Update)

Active bibliography (related documents):   More   All
1.7:   Fault-Tolerant Forwarding in the Face of Malicious Routers - Mizrak, Marzullo, Savage   (Correct)
1.5:   Detecting Malicious Routers - Mizrak, Marzullo, Savage (2004)   (Correct)
0.5:   Amendment to: Highly Secure and Efficient Routing - Avramopoulos, Kobayashi.. (2004)   (Correct)

Similar documents based on text:
0.0:   Unknown -   (Correct)

BibTeX entry:   (Update)

@misc{ mizrak-fatih,
  author = "Alper Tugay Mizrak and Yu-Chung Cheng and Keith Marzullo and Stefan Savage",
  title = "Fatih: Detecting and Isolating Malicious Routers",
  url = "citeseer.ist.psu.edu/745992.html" }
Citations (may not include all citations):
572   Distributed snapshots: determining global states of distribu.. (context) - Chandy, Lamport - 1985
414   Unreliable failure detectors for reliable distributed system.. - Chandra, Toueg - 1996
203   Multicast extensions to OSPF - Moy - 1994
202   Data encryption standard (context) - of, Technology - 1999
181   Spacetime trade off hash coding with allowable error - time, in et al.
117   Measuring ISP topologies with Rocketfuel - Spring, Mahajan et al. - 2002
100   Ariadne: A secure on-demand routing protocol for ad hoc netw.. - Hu, Perrig et al. - 2002
95   Interconnections: Bridges and Routers (context) - Perlman - 1992
78   Network Layer Protocols with Byzantine Robustness (context) - Perlman - 1988
56   Packet reordering is not pathological network behavior (context) - Bennett, Partridge et al. - 1999
56   UMAC: Fast and secure message authentication - Black, Halevi et al. - 1999
53   Trajectory sampling for direct traffic observation - Duffield, Grossglauser
45   on Programming Languages and Systems (context) - Lamport, Shostak et al. - 1982
44   Securing the border gateway routing protocol - Smith, Garcia-Luna-Aceves
41   Secure Border Gateway Protocol (context) - Kent, Lynn et al. - 2000
38   An efficient message authentication scheme for link state ro.. - Cheung - 1997
36   Detecting disruptive routers: A distributed network monitori.. - Bradley, Cheung et al. - 1998
33   Set reconciliation with nearly optimal communication complex.. - Minsky, Trachtenberg et al. - 2001
29   Protecting routing infrastructures from denial of service us.. - Cheung, Levitt - 1997
26   A one-way packet loss metric for IPPM (context) - Almes, Kalidindi et al. - 1999
25   Trends in denial of service attack technology (context) - Houle, Weaver et al. - 2001
25   Advanced encryption standard (context) - of, Technology - 2001
19   Measuring packet reordering - Bellardo, Savage
17   Design and implementation of a scalable intrusion detection .. - Jou, Gong et al. - 2000
15   Understanding network processors (context) - Shah - 2001
10   Secure traceroute to detect faulty or malicious routing - Padmanabhan, Simon - 2003
9   Shining light on dark address space (context) - Labovitz, Ahuja et al. - 2001
8   Listen and Whisper: Security Mechanisms for BGP - Subramanian, Roth et al. - 2004
7   Beyond folklore: observations on fragmented traffic - Shannon, Moore et al. - 2002
7   Early detection of message forwarding faults (context) - Herzberg, Kutten - 2000
6   Using conservation of flow as a security mechanism in networ.. - Hughes, Aura et al. - 2000
5   Efficient and secure network routing algorithms - Goodrich - 2001
4   Using a compromised router to capture network traffic (context) - Taylor - 2002
4   ISP Security BOF (context) - Thomas - 2003
4   Security: Adding protection to the network via the network p.. (context) - Feghali, Burres et al. - 2002
3   Packet reordering metric for IPPM (context) - Morton, Ciavattone et al. - 2003
2   Highly secure and efficient routing - Avramopoulos, Kobayashi et al. - 2004
2   Intrusion detection mechanism to detect reachability attacks.. (context) - Cosendai, Dacier et al. - 1999
2   Amendment to: Highly secure and efficient routing - Avramopoulos, Kobayashi et al. - 2004
1   edu rogawayumacperfbi (context) - Performance, cs et al. - 2000
1   Packet reordering: The minimal longest ascending subsequence.. (context) - Pullin, Corlett et al. - 2002
1   Report on DIMACS Workshop on Large-Scale Internet Attacks (context) - Ao - 2003
1   Detecting malicious routers - Mizrak, Marzullo et al. - 2004
http://www.cisco.com/warp/public/cc/pd/ifaa
http://www.juniper.net/

Documents on the same site (http://www.cs.ucsd.edu/groups/sysnet/pubs.html):   More
Moshe: A Group Membership Service for WANs - Keidar, Sussman, Marzullo, Dolev (1999)   (Correct)
Scalable Causal Message Logging for Wide-Area Environments - Bhatia, Marzullo, Alvisi (2001)   (Correct)
The Phoenix Recovery System: Rebuilding from the.. - Junqueira.. (2003)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC