Expand this Topic clickable element to expand a topic
Skip to content
Optica Publishing Group

Preserving Confidentiality in PCE-based Multi-domain Networks

Not Accessible

Your library or personal account may give you access

Abstract

The path computation element (PCE) architecture has been proposed to effectively enable multi-domain traffic engineering (TE) in generalized multiprotocol label switching (GMPLS) networks while providing an adequate level of confidentiality among domains. However, a malicious utilization of the procedures defined within the PCE architecture might affect the confidentiality of network domain information in a multi-domain multi-carrier network scenario. This paper discusses the critical issues of the PCE architecture in terms of confidentiality. A two-step authorization scheme, named the behavior-based PCE authorization policy (BPAP), is proposed. The BPAP includes a novel add-on PCE component and a central authorization policy server to protect against confidentiality breaking. The scheme is based on the PCE protocol (PCEP) client behavior analysis and includes attack pattern detection procedures and possible partial information filtering of the reply message. The applicability of the BPAP scheme is validated in wavelength switched optical networks (WSONs) through simulations focusing on the exchange of a restricted set of available resources. Finally, a BPAP implementation is experimentally evaluated, showing the efficiency of the two-step scheme in terms of scalability, capability to limit the discovery of critical information, and reactivity to confidential attacks.

©2011 Optical Society of America

Full Article  |  PDF Article
More Like This
Field and lab trials of PCE-based OSNR-aware dynamic restoration in multi-domain GMPLS-enabled translucent WSON

Lei Liu, Ramon Casellas, Takehiro Tsuritani, Itsuro Morita, Shuichi Okamoto, Ricardo Martínez, and Raül Muñoz
Opt. Express 19(27) 26568-26577 (2011)

Domain Sequence Protocol (DSP) for PCE-Based Multi-Domain Traffic Engineering

Domenico Siracusa, Stefano Grita, Guido Maier, Achille Pattavina, Francesco Paolucci, Filippo Cugini, and Piero Castoldi
J. Opt. Commun. Netw. 4(11) 876-884 (2012)

Experimental Demonstration of Impairment-Aware PCE for Multi-Bit-Rate WSONs

Francesco Paolucci, Nicola Sambo, Filippo Cugini, Alessio Giorgetti, and Piero Castoldi
J. Opt. Commun. Netw. 3(8) 610-619 (2011)

Cited By

You do not have subscription access to this journal. Cited by links are available to subscribers only. You may subscribe either as an Optica member, or as an authorized user of your institution.

Contact your librarian or system administrator
or
Login to access Optica Member Subscription

Figures (7)

You do not have subscription access to this journal. Figure files are available to subscribers only. You may subscribe either as an Optica member, or as an authorized user of your institution.

Contact your librarian or system administrator
or
Login to access Optica Member Subscription

Tables (2)

You do not have subscription access to this journal. Article tables are available to subscribers only. You may subscribe either as an Optica member, or as an authorized user of your institution.

Contact your librarian or system administrator
or
Login to access Optica Member Subscription

Equations (5)

You do not have subscription access to this journal. Equations are available to subscribers only. You may subscribe either as an Optica member, or as an authorized user of your institution.

Contact your librarian or system administrator
or
Login to access Optica Member Subscription

Select as filters


Select Topics Cancel
© Copyright 2024 | Optica Publishing Group. All rights reserved, including rights for text and data mining and training of artificial technologies or similar technologies.