MPTCP-H: A DDoS attack resilient transport protocol to secure wide area measurement systems

被引:12
作者
Demir, Kubilay [1 ,2 ]
Nayyer, Ferdaus [1 ]
Suri, Neeraj [1 ]
机构
[1] TU, Dept CS, Darmstadt Hochschulstr 10, D-64289 Darmstadt, Germany
[2] Bitlis Eren Univ, Dept Elect & Elect, Bitlis, Turkey
基金
欧盟地平线“2020”;
关键词
Availability; Security; Multipath TCP; DDoS attack; Smart Grid; COMMUNICATION;
D O I
10.1016/j.ijcip.2019.02.003
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The penetration of distributed generators into the power distribution grid requires real-time control of the grid by monitoring the state of the power distribution grid. Such a large-scale monitoring cannot be performed by using traditional Supervisory Control and Data Acquisition (SCADA) systems due to its lack of the scalability. To address this issue, contemporary Wide Area Measurement Systems (WAMS) are deployed, which provide the dynamic snapshots of the power system. However, WAMS's more open structure versus SCADA poses a risk of WAMS being vulnerable to cyberattacks. In particular, due to high responsiveness and availability requirements of WAMS applications, attacks i.e., Denial-of-Service (DoS) and Distributed DoS (DDoS) are of primary concern for WAMS. In this paper, we focus on internal DoS/DDoS attacks launched against the WAMS devices by exploiting the vulnerabilities. To counter such attacks, we propose a proactive and robust extension of the Multipath-TCP (MPTCP) transportation protocol, termed as MPTCP-H. The proposed extension mitigates the internal attacks by using a novel stream hopping mechanism, which periodically renews the subflows to hide the open port numbers of the connection. By doing so, MPTCP-H significantly increases the attacker's cost for a successful attack without perturbing the WAMS data traffic. The experimental results show that the proposed MPTCP-H provides a significant DoS/DDoS attack mitigation for WAMS at the expense of reasonable overheads, i.e., additional latency and message. (C) 2019 Elsevier B.V. All rights reserved.
引用
收藏
页码:84 / 101
页数:18
相关论文
共 26 条
[1]  
Afzal Z., 2017, THESIS
[2]  
Ahmad RH, 2017, ADV INF SECUR PRIV, P179, DOI 10.4018/978-1-5225-1829-7.ch010
[3]   Performance comparison of IEC 61850-90-5 and IEEE C37.118.2 based wide area PMU communication networks [J].
Ali, Ikbal ;
Aftab, Mohd Asim ;
Hussain, S. M. Suhail .
JOURNAL OF MODERN POWER SYSTEMS AND CLEAN ENERGY, 2016, 4 (03) :487-495
[4]  
Amer PD., 2013, LOAD SHARING STREAM
[5]  
[Anonymous], 2013, 6824 IETF RFC
[6]  
[Anonymous], 2011, P INT C
[7]   Keeping denial-of-service attackers in the dark [J].
Badishi, Gal ;
Herzberg, Amir ;
Keidar, Idit .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2007, 4 (03) :191-204
[8]  
Demirhan K, 2017, ADV SOC NETW ONLINE, P1, DOI 10.4018/978-1-5225-2019-1
[9]  
Dixon R.C., 1994, SPREAD SPECTRUM SYST
[10]  
Dreibholz T., 2015, NORNET TESTBED LARGE