Spread: Improving Network Security by Multipath Routing
نویسندگان
چکیده
This paper considers the delivery of secret information across insecure networks. A novel end-to-end multipath secure data delivery scheme, Secure Protocol for REIiable dAta Delivery (SPREAD), is proposed as a complementary mechanism for the data confidentiality service in the public networks. The idea behind SPREAD is io improve the confidentiality by enforcing the secret sharing principle in the network via multipath routing. With a (r,N) secret sharing scheme, the message io be protected can be divided into N shares such that from any T o r more shares, it can easily recover the message, while from any T-1 or less shares, it should be impossible to recover the message. Then using multipath routing, the shares are delivered across the network via multiple independent paths. The destination node reconstructs the original message upon receiving T or more shares. This paper presents the system architecture of the SPREAD scheme, including how to divide the secret message into multiple shares using the secret sharing scheme, how to find the desired multiple secure paths, as well as how to allocate the message shares onto each selected path such that maximum security can be achieved. The discussion on the optimal share allocations reveals ihat redundant SPREAD scheme is not only more secure but also more errortolerant and fault-tolerani. The simulation results show that significantly reduced message interception ratio can be achieved by SPREAD.
منابع مشابه
SPREAD: Improving network security by multipath routing in mobile ad hoc networks
We propose and investigate the SPREAD scheme as a complementary mechanism to enhance secure data delivery in a mobile ad hoc network. The basic idea is to transform a secret message into multiple shares, and then deliver the shares via multiple paths to the destination so that even if a certain number of message shares are compromised, the secret message as a whole is not compromised. We presen...
متن کاملSecuring Physical and network layer using SNAuth-SPMAODV with DSSS for Mobile adhoc networks in Military Scenario
A mobile ad hoc network is an infrastructure less network, fast emerging today for deployment in variety of applications. During deployment, security emerges as a central requirement due to many attacks that affects the performance of the ad hoc networks. Particularly Denial of Service attack is one such severe attack against network and physical layer which is a challenging one to defend again...
متن کاملNoC security using multipath routing
Title: Network-on-chip security using multipath routing Authors: Radu Stefan, Kees Goossens keywords: noc, multipath, security In a highly competitive consumer electronics industry, companies try to protect their IP and that of their customers from reverse-engineering attempts and sometimes they attempt to crate barriers against unauthorized use of their products in applications like Digital Ri...
متن کاملشیوه های توزیع بار در مهندسی ترافیک
Because of rapidly rising network traffic, ISP providers are trying to create new network structures and extend more resources to control the growth of demands. It is important to efficiently split the network bandwidth among different sources so that each user has enough bandwidth. Traffic engineering is used to achieve this goal. Performing reliable and efficient network ope...
متن کاملImproving Network Performance using ACO Based Redundant Link Avoidance Algorithm
In the wide spread internet, response time and pocket loss are inappropriate due to network traffic, as a result the network efficiency becomes worst and the system provides poor Quality of Service (QoS). An optimal routing protocol, especially multipath may avoid such traffic in the network. But existing routing protocols, both single path and multi path, concentrates only on finding the route...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2004