Secure lightpath establishment method based on automatically switching optical network (ASON)

A technology of automatic exchange and establishment method, which is applied in optical fiber transmission, selection device of multiplexing system, electromagnetic wave transmission system, etc., can solve the problems of amplification of attack effect, imperfect security mechanism of signaling protocol RSVP, high overhead, etc. To achieve the effect of preventing malicious tampering

Inactive Publication Date: 2009-12-30
UNIV OF SCI & TECH BEIJING
View PDF0 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

For example, attackers use abnormal means or spam PATH or RESV messages to exhaust resources such as wavelengths on optical links, so as to reduce communication performance or destroy communication
Moreover, the effect of this attack is likely to be amplified after passing through multiple switching network elements, so that the quality of service of a single autonomous domain or the entire optical transport network is greatly reduced
[0015] (2) Passive attack
Compared with the Hop-by-Hop protection mechanism and the SDS / CD method, it is a compromise security solution between the two in terms of performance, which has strong scalability but high overhead
In addition, there are no invention patents involving optical network control plane security technology in domestic and foreign patents
[0021] To sum up, on the one hand, the current security mechanism for the signaling protocol RSVP is still far from perfect, and it is difficult to achieve an acceptable balance between security and performance

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Secure lightpath establishment method based on automatically switching optical network (ASON)
  • Secure lightpath establishment method based on automatically switching optical network (ASON)
  • Secure lightpath establishment method based on automatically switching optical network (ASON)

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0063] Each node of the target network has obtained the public key information of other nodes by running the OSPF-TE protocol during initialization. During the establishment of the optical path, Figure 5 What is described is an ideal situation, in which all nodes are legal, there is no malicious tampering of variable objects such as Adspec and Rspec related to QoS, and the forward wavelength is successful.

[0064] During the establishment of the optical path, Image 6 Described is the sending of the PATH_ERR message due to the detection of forward wavelength reservation failure at node C or the detection of a violation of the integrity of an invariant object. In the subsequent process, a RESV_ERR message is sent due to failure to establish a cross-connection using the carried wavelength at the Node B or detecting that the integrity of the invariant object has been violated. exist Figure 5 with Image 6 In the case of merging reservations, the RESV_CONFIRM message must a...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a secure lightpath establishment method based on an automatically switching optical network (ASON), relating to the establishment of lightpaths or light connection in a control plane of the ASON. The method can prevent malevolence or selfishness of internal nodes by employing the comprehensive wavelength reservation strategy to carry out integrity protection on the important objects in the GMPLS RSVP-TE message through the security mechanisms such as digital signature and message feedback. In addition, the method designs a corresponding key management mechanism according to the characteristic of close coupling between a routing module and a signaling module in the ASON and distributes a node public key certificate needed in the process of establishing the lightpath by adopting the PKLSA message of OSPF-TE. The method has the characteristics of fast lightpath establishment, short attack detection and low message load while ensuring secure establishment of the lightpaths, and is especially suitable for secure establishment of light connection in the control plane in the ASON.

Description

Technical field: [0001] The invention belongs to the technical field of signaling and routing in the automatic switching optical network ASON, and in particular relates to the safe establishment of the optical path in the ASON network. The method can ensure the safe establishment of the optical path, and at the same time has lower connection blocking probability, shorter optical path establishment time, and lower message load. Background technique: [0002] ASON (Automatically Switching Optical Networks) is the mainstream technology of the next-generation optical network. It introduces the concept of control plane to the traditional optical network, enabling the optical network to realize automatic switching under the control of routing and signaling. At the same time, it also enables ASON to provide many functions that traditional optical networks do not have in the environment of heterogeneous network interconnection of multi-vendor equipment, such as end-to-end connection...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04Q11/00H04B10/20H04B10/25
Inventor 周贤伟吴启武王建萍刘涛安建伟
Owner UNIV OF SCI & TECH BEIJING
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products