Design of an adaptive security mechanism for modern routers

Modern routers should be able to support many new functions to meet the needs of customers. To achieve such flexibility, programmable packet processors have replaced traditional fixed-function custom logic in the data path of routers. This programmability introduces new vulnerabilities in these syst...

Full description

Saved in:
Bibliographic Details
Published in:2015 IEEE International Conference on Consumer Electronics (ICCE) pp. 241 - 244
Main Authors: Mansour, Christopher, El Hajj Shehadeh, Youssef, Chasaki, Danai
Format: Conference Proceeding
Language:English
Published: IEEE 01-01-2015
Subjects:
Online Access:Get full text
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Modern routers should be able to support many new functions to meet the needs of customers. To achieve such flexibility, programmable packet processors have replaced traditional fixed-function custom logic in the data path of routers. This programmability introduces new vulnerabilities in these systems that can lead to new types of network attacks. We propose a monitoring subsystem which functions in parallel with the processing core of the router and aids in the detection of such attacks. Upon detection, our system has the ability to restore the router's operation to a different, but functionally equivalent state.
ISSN:2158-3994
2158-4001
DOI:10.1109/ICCE.2015.7066397