
Magic Train: Design of Measurement Methods Against Bandwidth Inflation Attacks
Abstract of Design of Measurement
Design of Measurement Methods Against Bandwidth Inflation Attacks.Bandwidth measurement is important for many network applications and services, such as peer-to-peer networks, video caching and anonymity services.
To win a bandwidth-based competition for some malicious purpose, adversarial Internet hosts may falsely announce a larger network bandwidth.
Some preliminary solutions have been proposed to this problem. They can either evade the bandwidth inflation by a consensus view (i.e., opportunistic bandwidth measurements) or detect bandwidth frauds via forgeable tricks.
However, smart adversaries can easily remove the forgeable tricks and report an equally larger bandwidth to avoid the consensus analyses.Being an uncooperative measurement method, magic train can be easily deployed on the Internet. The results have successfully confirmed the effectiveness of magic train in detecting and preventing smart bandwidth inflation attacks.
Conclusions
In this paper, we have advanced the state-of-the-art for secure bandwidth measurement.
We have also proposed a new magic delay algorithm to secure capacity measurement for the first time.
At the end, we have shown through a rich set of testbed and Internet experiments that, our design can achieve a good detection capability against even the smart bandwidth inflation attacks
and can adapt well to today’s Internet.