KHIP—a scalable protocol for secure multicast routing
- 30 August 1999
- conference paper
- Published by Association for Computing Machinery (ACM)
- Vol. 29 (4) , 53-64
- https://doi.org/10.1145/316188.316206
Abstract
We present Keyed HIP (KHIP), a secure, hierarchical multicast routing protocol. We show that other shared-tree multicast routing protocols are subject to attacks against the multicast routing infrastructure that can isolate receivers or domains or introduce loops into the structure of the multicast routing tree. KHIP changes the multicast routing model so that only trusted members are able to join the multicast tree. This protects the multicast routing against attacks that could form branches to unauthorized receivers, prevents replay attacks and limits the effects of flooding attacks. Untrusted routers that are present on the path between trusted routers cannot change the routing and can mount no denial-of-service attack stronger than simply dropping control messages. KHIP also provides a simple mechanism for distributing data encryption keys while adding little overhead to the protocol.Keywords
This publication has 12 references indexed in Scilit:
- A generic multicast-key determination protocolPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Elements of trusted multicastingPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Trade-offs in routing private multicast trafficPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Multicast security: a taxonomy and some efficient constructionsPublished by Institute of Electrical and Electronics Engineers (IEEE) ,1999
- Secure group communications using key graphsPublished by Association for Computing Machinery (ACM) ,1998
- The MASC/BGMP architecture for inter-domain multicast routingPublished by Association for Computing Machinery (ACM) ,1998
- Efficient security mechanisms for the border gateway routing protocolComputer Communications, 1998
- The HIP protocol for hierarchical multicast routingPublished by Association for Computing Machinery (ACM) ,1998
- IolusPublished by Association for Computing Machinery (ACM) ,1997
- Core based trees (CBT)Published by Association for Computing Machinery (ACM) ,1993