In this project, our focus is on understanding a class of security systems in analytical terms at a certain level of abstraction. Specifically, the systems we intend to look at are (I) multipath routing (for increasing reliability), (ii) dynamic firewalls. For multipath routing, the threat scenario is jamming – the nodes that are disabled due to the jamming take the place of compromised components in that they fail to perform their proper function. The multipath and diverse path mechanisms are intended to allow the system to perform its overall function (critical message delivery) despite this. The project will focus on quantifying and bounding this ability to function redundantly. For the firewall, the compromise consists of an attacker guessing at the firewall rules and being able to circumvent them. The system is designed to withstand this by dynamically changing the ruleset to be applied over time. Our project will focus on quantifying or characterizing this ability.
TEAM
PIs: Rudra Dutta, Meeko Oishi (UNM-Albuquerque)
Student Trisha Biswas