Routing with confidence: Supporting discretionary routing requirements in policy based networks

Apu Kapadia, Prasad Naldurg, Roy H. Campbell

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

We propose a novel policy-based secure routing framework that extends the mandatory nature of network access-control policies and allows users to exercise discretionary control on what routes they choose in a given network. In contrast to existing research that focuses mainly on restricting network access based on user credentials, we present a model that allows users to specify discretionary constraints on path characteristics and discover routes based on situational trust attributes of routers in a network. In this context, we present three levels of trust-attribute certification based on inherent, consensus based, and inferred characteristics of routers. We also define a "confidence " measure that captures the "quality of protection" of a route with regard to various dynamic trust relationships that arise from this interaction between user preferences and network policy. Based on this measure, we show how to generate paths of highest confidence efficiently by using shortest path algorithms. We show how our model generalizes the notion of Quality of Protection (QoP) for secure routing and discuss how it can be applied to anonymous and privacy-aware routing, intrusion tolerant communication, and secure resource discovery for ubiquitous computing, high performance, and peer-to-peer environments.

Original languageEnglish (US)
Title of host publicationProceedings - Fifth IEEE International Workshop on Policies for Distributed Systems and Networks, POLICY 2004
Pages45-54
Number of pages10
DOIs
StatePublished - 2004
EventProceedings - Fifth IEEE International Workshop on Policies for Distributed Systems and Networks, POLICY 2004 - Yorktown Heights, NY, United States
Duration: Jun 7 2004Jun 9 2004

Publication series

NameProceedings - Fifth IEEE International Workshop on Policies for Distributed Systems and Networks, POLICY 2004

Other

OtherProceedings - Fifth IEEE International Workshop on Policies for Distributed Systems and Networks, POLICY 2004
Country/TerritoryUnited States
CityYorktown Heights, NY
Period6/7/046/9/04

ASJC Scopus subject areas

  • General Engineering

Fingerprint

Dive into the research topics of 'Routing with confidence: Supporting discretionary routing requirements in policy based networks'. Together they form a unique fingerprint.

Cite this