pith. sign in

arxiv: 1803.08568 · v1 · pith:NXJPKKQNnew · submitted 2018-03-22 · 💻 cs.NI

Securing the Control-plane Channel and Cache of Pull-based ID/LOC Protocols

classification 💻 cs.NI
keywords channelattackscachecontrol-planemappingsprotocolspull-basedcount-min
0
0 comments X
read the original abstract

Pull-based ID/LOC split protocols, such as LISP (RFC6830), retrieve mappings from a mapping system to encapsulate and forward packets. This is done by means of a control-plane channel. In this short paper we describe three attacks against this channel (Denial-of-Service and overflowing) as well as the against the local cache used to store such mappings. We also provide a solution against such attacks that implements a per-source rate-limiter using a Count-Min Sketch data-structure.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.