论文标题

通过可验证的延迟功能防止在物联网网络中拒绝服务攻击

Preventing Denial of Service Attacks in IoT Networks through Verifiable Delay Functions

论文作者

Attias, Vidal, Vigneri, Luigi, Dimitrov, Vassil

论文摘要

无许可的分布式分类帐提供了一种有前途的方法来处理物联网(IoT)范式。由于IoT设备主要生成数据交易和微付款,因此使用费用来调节网络访问的分布式分类帐并不是最佳选择。在本文中,我们研究了由IOTA开发的Fecess Architecture,并专门为IoT设计。由于缺乏费用,恶意节点可以利用此功能来产生无限数量的交易并执行拒绝服务攻击。我们建议通过可验证的延迟功能来减轻这些攻击。这些功能是不可行的,难以计算且易于验证的功能,直到最近才制定。在我们的工作中,我们设计了一种拒绝服务预防机制,该机制解决了网络异质性,有限的节点计算功能和特定于硬件的实现优化。从理论的角度研究了可验证的延迟功能,但在切实应用中几乎没有完成。因此,本文可以被视为该领域的先驱工作,因为它在这个理论数学框架和现实世界中的问题之间建立了桥梁。

Permissionless distributed ledgers provide a promising approach to deal with the Internet of Things (IoT) paradigm. Since IoT devices mostly generate data transactions and micropayments, distributed ledgers that use fees to regulate the network access are not an optimal choice. In this paper, we study a feeless architecture developed by IOTA and designed specifically for the IoT. Due to the lack of fees, malicious nodes can exploit this feature to generate an unbounded number of transactions and perform a denial of service attacks. We propose to mitigate these attacks through verifiable delay functions. These functions, which are non-parallelizable, hard to compute, and easy to verify, have been formulated only recently. In our work, we design a denial of service prevention mechanism which addresses network heterogeneity, limited node computational capabilities, and hardware-specific implementation optimizations. Verifiable delay functions have mostly been studied from a theoretical point of view, but little has been done in tangible applications. Hence, this paper can be considered as a pioneer work in the field, since it builds a bridge between this theoretical mathematical framework and a real-world problem.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源