Gaining insight into AS-level outages through analysis of Internet Background Radiation

Gaining insight into AS-level outages through analysis of Internet Background Radiation
复制标题

通过分析互联网背景辐射深入了解 AS 级中断

DOI:
10.1109/infcom.2013.6567183
复制
发表时间:
2013
期刊:
2013 IEEE Conference on Computer Communications Workshops (INFOCOM WKSHPS)
影响因子:
--
通讯作者:
E. Aben
E. Aben
中科院分区:
--
文献类型:
--
作者:
Karyn Benson;A. Dainotti;K. Claffy;E. Aben

文献摘要

被引文献

相似文献

互联网背景辐射(IBR)是主要由恶意软件产生的未经请求的网络流量,例如,蠕虫扫描在以前的工作中,我们从到达未分配IPv4地址空间的大(/8)段的IBR流量中提取信号,以识别自治系统(AS)粒度的大规模连接中断,并使用我们的技术研究政府审查和自然灾害的事件[1]。在这里,我们探索其他IBR衍生的指标,可以提供宏观连接中断的原因的见解。我们提出指示分组丢失的度量(例如,由于链路拥塞)沿着从特定AS到我们的观察点的路径。我们使用三个案例研究来说明我们的指标可以帮助确定数据包丢失的中断特性。这些指标可用于半自动系统的诊断组件,用于检测和表征大规模停电。
Internet Background Radiation (IBR) is unsolicited network traffic mostly generated by malicious software, e.g., worms, scans. In previous work, we extracted a signal from IBR traffic arriving at a large (/8) segment of unassigned IPv4 address space to identify large-scale disruptions of connectivity at an Autonomous System (AS) granularity, and used our technique to study episodes of government censorship and natural disasters [1]. Here we explore other IBR-derived metrics that may provide insights into the causes of macroscopic connectivity disruptions. We propose metrics indicating packet loss (e.g., due to link congestion) along a path from a specific AS to our observation point. We use three case studies to illustrate how our metrics can help identify packet loss characteristics of an outage. These metrics could be used in the diagnostic component of a semiautomated system for detecting and characterizing large-scale outages.