Detail publikace

Identification of Threats and Security Risk Assessments for Recursive Internet Architecture

ASGARI, H. HAINES, S. RYŠAVÝ, O.

Originální název

Identification of Threats and Security Risk Assessments for Recursive Internet Architecture

Typ

článek v časopise ve Web of Science, Jimp

Jazyk

angličtina

Originální abstrakt

There are several types of attacks on communication networks such as disrupting or blocking communication, intercepting, injecting fabricated packets, accessing and modifying the information. Here, for the first time the SecRAM, a recent security risk assessment methodology, is proposed to be systematically applied in a different context, i.e., to the network systems, specifically to an emerging network architecture called recursive internetwork architecture (RINA). The security risk assessment is performed to: identify run-time threats; assess the impact and likelihood of occurrence of attacks relevant to the threats; evaluate the RINA design principles; and validate the built-in security enablers and the mitigation actions that are devised to combat such attacks. Resulting from this assessment, specific measures are proposed to further improve cyber resiliency of the RINA, in securing its layers and components. The enhancement prevails through the utilization of multilayered security controls or the increase in their strength. We show how programmable security controls can assist in tackling network attacks. For proof of concept, we demonstrate formal analysis of some of the security properties of RINA using ProVerif tool and RINA Simulator. We apply the tool to create a formal model of a network and mitigate the selected attacks. The results of this analysis are provided.

Klíčová slova

Security, Risk management, Network architecture, Computer architecture, Resilience, ISO Standards, Recursive Internet Architecture

Autoři

ASGARI, H.; HAINES, S.; RYŠAVÝ, O.

Vydáno

12. 9. 2018

ISSN

1937-9234

Periodikum

IEEE Systems Journal

Ročník

12

Číslo

3

Stát

Spojené státy americké

Strany od

2437

Strany do

2448

Strany počet

12

URL

BibTex

@article{BUT155080,
  author="Hamid {Asgari} and Sarah {Haines} and Ondřej {Ryšavý}",
  title="Identification of Threats and Security Risk Assessments for Recursive Internet Architecture",
  journal="IEEE Systems Journal",
  year="2018",
  volume="12",
  number="3",
  pages="2437--2448",
  doi="10.1109/JSYST.2017.2765178",
  issn="1937-9234",
  url="https://ieeexplore.ieee.org/document/8105791/"
}