Securing a Bandwidth Broker Architecture
نویسندگان
چکیده
In this paper we discuss the topic of the security in the context of a Bandwidth Broker’s operation based on the existing literature on this issue and new techniques and methods. We propose mechanisms to enhance the security of the communications during the Bandwidth Broker operation both within a single domain and across different domains. The message exchanges for the operation of a distributed Bandwidth Broker architecture are enumerated. The purpose is to examine the main security risks for a distributed Bandwidth Broker architecture operating in a real-world environment and address them using the PKI architecture mechanisms. We also present a proposal for identifying misbehaving flows that intends to be both simple and effective. We finally evaluate the performance impact that our solution incurs to the operation of the Bandwidth Broker and show that it offers an advantageous trade-off in most cases where security considerations exist.
منابع مشابه
On Scalable Design of Bandwidth Brokers
In this paper we study the scalability issue in the design of a centralized bandwidth broker model for dynamic control and management of QoS provisioning. We propose and develop a path-oriented, quota-based dynamic bandwidth allocation mechanism for efficient admission control operations under the centralized bandwidth broker model. We demonstrate that this dynamic bandwidth allocation mechanis...
متن کاملOn scalable network resource management using bandwidth brokers
In this paper we study the scalability issue in the design of a centralized bandwidth broker model for dynamic control and management of QoS provisioning. We propose and develop a path-oriented, quota-based dynamic bandwidth allocation mechanism for efficient admission control operations under the centralized bandwidth broker model. We demonstrate that this dynamic bandwidth allocation mechanis...
متن کاملDesign of a Multi-layer Bandwidth Broker Architecture
Internet is widely known for lacking any kind of mechanism for the provisioning of Quality of Service guarantees. The Internet community concentrates its efforts on the Bandwidth Broker architecture towards this problem. This paper presents a design model of a multi-layer Bandwidth Broker architecture that introduces a Resource Control Layer, which is divided into two sub-layers. The upper one ...
متن کاملA Novel Bandwidth Broker Architecture Based on Topology Aggregation in Delay|Bandwidth Sensitive Networks
Either in flow-based or class-based QoS architectures, controlling the admission of traffic entering the network becomes a crucial task in the new telecom services. The Bandwidth Broker BB architecture is one of the efficient admission control solutions. In this paper, we present a novel bandwidth broker architecture for scalable support of guaranteed services based on the concept of topology a...
متن کاملEvaluation of Bandwidth Broker Signaling
The Differentiated Service (DiffServ) architecture for the Internet implements a scalable mechanism for quality-of-service (QoS) provisioning. Bandwidth brokers represent the instances of the architecture, that automate the provisioning of a DiffServ service between network domains. Although several bandwidth broker implementations (e.g. [Bri98]) have been proposed, the alternatives and trade-o...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2005