Title
Adversarial topology discovery in network virtualization environments: a threat for ISPs?
Abstract
Network virtualization is a new Internet paradigm which allows multiple virtual networks (VNets) to share the resources of a given physical infrastructure. The virtualization of entire networks is the natural next step after the virtualization of nodes and links. While the problem of how to embed a VNet ("guest network") on a given resource network ("host network") is algorithmically well-understood, much less is known about the security implications of this new technology. This paper introduces a new model to reason about one particular security threat: the leakage of information about the physical infrastructure--often a business secret. We initiate the study of this new problem and introduce the notion of request complexity which describes the number of VNet requests needed to fully disclose the substrate topology. We derive lower bounds and present algorithms achieving an asymptotically optimal request complexity for important graph classes such as trees, cactus graphs (complexity $$O(n)$$ O ( n ) ) as well as arbitrary graphs (complexity $$O(n^2)$$ O ( n 2 ) ). Moreover, a general motif-based topology discovery framework is described which exploits the poset structure of the VNet embedding relation.
Year
DOI
Venue
2015
10.1007/s00446-014-0217-4
Distributed Computing
Field
DocType
Volume
Virtualization,Topology,Embedding,Computer science,Exploit,Host (network),Theoretical computer science,Asymptotically optimal algorithm,Network virtualization,Partially ordered set,The Internet
Journal
28
Issue
ISSN
Citations 
2
0178-2770
2
PageRank 
References 
Authors
0.41
24
3
Name
Order
Citations
PageRank
Yvonne Anne Pignolet111821.26
Stefan Schmid255971.98
Gilles Tredan3464.61