Computing Reviews
Today's Issue Hot Topics Search Browse Recommended My Account Log In
Review Help
Search
Demystifying Internet-wide service discovery
Leonard D., Loguinov D. IEEE/ACM Transactions on Networking21 (6):1760-1773,2013.Type:Article
Date Reviewed: Apr 21 2014

Internet-wide service discovery is used to figure out various characteristics about the Internet. It can also be used for tasks such as estimating the global impact of a known security virus or determining how Internet worms create massive botnets. Internet-wide service discovery is conducted by sending scanning packets to all Internet protocol (IP) addresses (232 for IPv4). However, this scanning method often faces a significant number of complaints and blocking.

The motivation of this paper is to unveil the causes of unsuccessful scanning. The paper analyzes the characteristics of scanners and their impacts, which include scan scope, scan order, number of scanning sources, partial scanning, types of scanning packets, scanning timeout and duration, and blacklisting. In addition, it proposes a novel metric (called politeness) that indicates the level of burden on remote networks. The analysis enables the design of a scanner that shows high performance and low complaints. Furthermore, the paper presents some interesting observations with the proposed scanner: the Internet is memoryless concerning scanners, there is no evidence of more complaints against the transmission control protocol (TCP) than the Internet control message protocol (ICMP), and network administrators are sensitive to traffic that clearly stands out rather than to scans on sensitive ports.

To reduce the number of complaints, the authors made a number of efforts such as inserting a detailed description of the scanning purpose in the scanning packet, quickly responding to complaint emails, and designing a scanner based on the politeness metric. However, the first two methods are not affordable to all scanning researchers. Thus, without the first two methods, the effect of the proposed scanner will be less than the presented experimental results.

Reviewer:  Seon Yeong Han Review #: CR142197 (1407-0547)
Bookmark and Share
 
Network Operations (C.2.3 )
 
 
Internet (C.2.5 ... )
 
 
Performance of Systems (C.4 )
 
Would you recommend this review?
yes
no
Other reviews under "Network Operations": Date
FDDI networking
Nemzow M., McGraw-Hill, Inc., New York, NY, 1993. Type: Book (9780070463226)
Feb 1 1995
Networking the Macintosh
Woodcock B., McGraw-Hill, Inc., New York, NY, 1993. Type: Book (9780070716841)
Aug 1 1994
Network administration survival guide
Plumley S., John Wiley & Sons, Inc., New York, NY, 1999. Type: Book (9780471296218)
Apr 1 1999
more...

E-Mail This Printer-Friendly
Send Your Comments
Contact Us
Reproduction in whole or in part without permission is prohibited.   Copyright 1999-2024 ThinkLoud®
Terms of Use
| Privacy Policy