Measuring the Measurers: How is Atlas Used?

Slides:



Advertisements
Similar presentations
Network Monitoring System In CSTNET Long Chun China Science & Technology Network.
Advertisements

Dude, where’s that IP? Circumventing measurement-based IP geolocation Presented by: Steven Zittrower.
Ragib Hasan Johns Hopkins University en Spring 2010 Lecture 3 02/15/2010 Security and Privacy in Cloud Computing.
COS 461 Fall 1997 Routing COS 461 Fall 1997 Typical Structure.
Ningning HuCarnegie Mellon University1 Optimizing Network Performance In Replicated Hosting Peter Steenkiste (CMU) with Ningning Hu (CMU), Oliver Spatscheck.
How Much Anonymity does Network Latency Leak? Paper by: Nicholas Hopper, Eugene Vasserman, Eric Chan-Tin Presented by: Dan Czerniewski October 3, 2011.
By Hitesh Ballani, Paul Francis, Xinyang Zhang Slides by Benson Luk for CS 217B.
Transient BGP Loops Do they matter, and what can be done about them? Nate Kushman MIT/Akamai Srikanth Kandula, Dina Katabi and John Wroclawski.
1 Estimating Shared Congestion Among Internet Paths Weidong Cui, Sridhar Machiraju Randy H. Katz, Ion Stoica Electrical Engineering and Computer Science.
Next Step In Signaling (NSIS) and Internet Routing Dynamics Charles Shen and Henning Columbia University in the City of New York Internet.
Flash Crowds And Denial of Service Attacks: Characterization and Implications for CDNs and Web Sites Aaron Beach Cs395 network security.
A Routing Control Platform for Managing IP Networks Jennifer Rexford Princeton University
Measurement and Monitoring Nick Feamster Georgia Tech.
End-to-End Issues. Route Diversity  Load balancing o Per packet splitting o Per flow splitting  Spill over  Route change o Failure o policy  Route.
INTERNET TOPOLOGY MAPPING INTERNET MAPPING PROBING OVERHEAD MINIMIZATION  Intra- and inter-monitor redundancy reduction IBRAHIM ETHEM COSKUN University.
A Machine Learning-based Approach for Estimating Available Bandwidth Ling-Jyh Chen 1, Cheng-Fu Chou 2 and Bo-Chun Wang 2 1 Academia Sinica 2 National Taiwan.
On the Suitability of ping to Measure Latency Cristel Pelsser Luca Cittadini Stefano Vissicchio Randy Bush Tokyo Ping 1.
Towards Highly Reliable Enterprise Network Services via Inference of Multi-level Dependencies Paramvir Bahl, Ranveer Chandra, Albert Greenberg, Srikanth.
GrIDS -- A Graph Based Intrusion Detection System For Large Networks Paper by S. Staniford-Chen et. al.
Advanced Networking Lab. Given two IP addresses, the estimation algorithm for the path and latency between them is as follows: Step 1: Map IP addresses.
A Routing Underlay for Overlay Networks Akihiro Nakao Larry Peterson Andy Bavier SIGCOMM’03 Reviewer: Jing lu.
Tony McGregor RIPE NCC Visiting Researcher The University of Waikato DAR Active measurement in the large.
A Light-Weight Distributed Scheme for Detecting IP Prefix Hijacks in Real-Time Lusheng Ji†, Joint work with Changxi Zheng‡, Dan Pei†, Jia Wang†, Paul Francis‡
Routing Around Decoys Max Schuchard, John Geddes, Christopher Thompson, Nicholas Hopper Proposed in FOCI'11, USINIX Security'11 and CCS'11 Presented by:
Yaping Zhu with: Jennifer Rexford (Princeton University) Aman Shaikh and Subhabrata Sen (ATT Research) Route Oracle: Where Have.
정하경 MMLAB Fundamentals of Internet Measurement: a Tutorial Nevil Brownlee, Chris Lossley, “Fundamentals of Internet Measurement: a Tutorial,” CMG journal.
Dissecting Significant Outages from 2014 Valerio Plessi CCIE R&S Customer Success Engineer
PlanetSeer: Internet Path Failure Monitoring and Characterization in Wide-Area Services Ming Zhang, Chi Zhang Vivek Pai, Larry Peterson, Randy Wang Princeton.
Network Layer Routing Networks: Routing.
Network Layer COMPUTER NETWORKS Networking Standards (Network LAYER)
Mapping/Topology attacks on Virtual Machines
Lecture 13 – Network Mapping
Becoming Acquainted With Statistical Concepts
Chapter 9 Optimizing Network Performance
Chapter 16 – Networking Outline 16.1 Introduction
Mapa de Topología usando sondas RIPE Atlas
Traceroute traceroute is a Unix utility designed by Van Jacobson in 1987 The Windows equivalent is called tracert The Linux equivalent is called tracepath.
Monitoring Persistently Congested Internet Links
Measuring IXP Interconnectivity
Improved Algorithms for Network Topology Discovery
Packet Switching Outline Store-and-Forward Switches
Data Streaming in Computer Networking
Routing and Routing Protocols: Routing Static
Stateless Source Address Mapping for ICMPv6 Packets
CCNA 2 v3.1 Module 6 Routing and Routing Protocols
Who should be responsible for risks to basic Internet infrastructure?
RESOLVING IP ALIASES USING DISTRIBUTED SYSTEMS
THE NETWORK LAYER.
CS 457 – Lecture 12 Routing Spring 2012.
Chapter 5 The Network Layer.
DoS - DNS Attacks A famous DNS attack was a DDoS "ping" attack. The attackers broke into machines on the Internet (popularly called "zombies") and.
A tool for diagnosing internet connectivity problems
Preventing Internet Denial-of-Service with Capabilities
Routing and Routing Protocols: Routing Static
OPS235: Configuring a Network Using Virtual Machines – Part 2
COS 561: Advanced Computer Networks
COS 561: Advanced Computer Networks
Privacy-Preserving Dynamic Learning of Tor Network Traffic
Uncovering IP Traffic Pattern in Saudi Arabia
Network Layer Routing Networks: Routing.
Network Architecture for Cyberspace
BGP Policies Jennifer Rexford
Multipath tracing with Paris Traceroute
BGP Interactions Jennifer Rexford
COS 561: Advanced Computer Networks
“Detective”: Integrating NDT and E2E piPEs
RIPE Atlas Viktor Naumov R&D Software Engineer
BGP Instability Jennifer Rexford
An Empirical Evaluation of Wide-Area Internet Bottlenecks
End-to-End Internet Delay Behavior
Presentation transcript:

Measuring the Measurers: How is Atlas Used? Cristel Pelsser <pelsser@unistra.fr> Emile Aben <emile.aben@ripe.net> Laurent Vanbever <lvanbever@ethz.ch> Randy Bush <randy@psg.com> Romain Fontugne <romain@iij.ad.jp> Thomas Holterbach <thomahol@ethz.ch> 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike Agenda What Tools are Popular? What Measurements are Made? The Major User Classes Built-Ins (DNS Roots, Anchors) – One ’Measurement’ System users (DNSmon etc.) Privileged Users (Long Running RIPE Experiments) Normal Users (Operators & Researchers) Ops and Researchers No Personal Data were Used or Published 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike What Tools are Popular? 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike How Many Users Used Each Tool? 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike Remember, Built-ins are Counted as One User 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike How Many Pings and Traceroutes? 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike Built-ins Dominate 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike System Users Dominate 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike Can We Tell Ops from Researchers? 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike Shooters & Sprayers shooters, who predominantly source measurements from, or perform measurements to, a single AS (ops?) sprayers, where the sources and destinations of measurements are more diverse (researchers?) 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike shooters sprayers 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike We Also Looked at Probe Diversity, Geographic and Topological 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike We Also Looked at Measurement Diversity, Geographic and Topological 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

so not yet distributable) https://archive.psg.com/ And it is All in Our Lovely Paper (in submission to IMC so not yet distributable) https://archive.psg.com/ imc-atlas-meta.pdf 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

What Can We Do Using Only the Built-In & Anchor Traceroutes?

Challenge: Traffic is asymetric The differential RTT ≠ delay of link B-C but … 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

Delays along non-common paths are independent this delay is independent of this delay 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

The central theorem tells us that with enough samples we have a normal distribution Figure from wikipedia: By Chen-Pan Liao - Own work, CC BY-SA 4.0, https://commons.wikimedia.org/w/index.php?curid=36773774 We only keep links that are observed from a significant number of ASs 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

Detection of RTT changes Example: DDoS attacks against DNS root servers Reference Interval 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

We Have a Similar Technique to Detect Forwarding Changes & Drops 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike

Telekom Malaysia BGP route leak 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

But Why Did We Look at That? Per-AS Alarm! For Delay 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike And Forwarding Too! Per-AS Alarm! For Forwarding 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike Congestion: Red nodes depict IP addresses detected by forwarding anomalies Malaysia 10,200km this way 2016.05.22 Atlas Hackathon Creative Commons: Attribution & Share Alike

Creative Commons: Attribution & Share Alike See! Research Can Be Operationally Useful! 2016.05.24 Atlas Meta Creative Commons: Attribution & Share Alike