arrow
Return

Detecting Adversarial State Manipulation in In-Network Fast ReRoute Systems

delete2026-07-20
delete0
PRE
AI
S
S. A. Harish
S
S. Vignesh
D
Divya Pathak
A
Anil Kumar Sharma
P
Praveen Tammana
DOI:10.1109/tnsm.2026.3715353delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
High-speed programmable data planes provide opportunities to implement data-driven fast reroute systems that quickly adapt to varying network conditions (e.g., congestion, failures) and improve network performance. The core of these systems has packet-processing algorithms running in the data plane that continuously look for traffic patterns (e.g., too many retransmissions) specific to a network condition (e.g., link failure) and take appropriate action (e.g., reroute). Despite their benefits, they also increase the potential attack surface. Adversaries can generate malicious traffic patterns resembling those anticipated by a fast reroute system and trick the system. Doing so would lead to poor network performance due to incorrect reroute decisions. In this paper, we propose a mechanism to detect whether the fast reroute systems are under the influence of malicious traffic patterns. Our key idea is to model the expected behavior using benign traffic features and use the model as a reference to determine whether the system is under the influence of adversaries. Using realistic attack traces, we demonstrate attacks on two fast reroute systems and successfully detect those attacks using the proposed detection mechanism.
Keywords:
In-network processing
anomaly detection
programmable data planes
network security
software defined networks
adversarial state manipulation
P4

Journal

IEEE Transactions on Network and Service Management cover
IEEE Transactions on Network and Service Management
IF:
5.4
Papers:
520
Citations:
9.2K

Organization

I
indian institute of technology hyderabad
Scholars:
445
Papers: 191
Citations: 0