(2019) Model Checking Data Flows in Concurrent Network Updates.
|
Text
FGHO19.pdf Download (446kB) | Preview |
Abstract
We present a model checking approach for the verification of data flow correctness in networks during concurrent updates of the network configuration. This verification problem is of great importance for software-defined networking (SDN), where errors can lead to packet loss, black holes, and security violations. Our approach is based on a specification of temporal properties of individual data flows, such as the requirement that the flow is free of cycles. We check whether these properties are simultaneously satisfied for all active data flows while the network configuration is updated. To represent the behavior of the concurrent network controllers and the resulting evolutions of the configurations, we introduce an extension of Petri nets with a transit relation, which characterizes the data flow caused by each transition of the Petri net. For safe Petri nets with transits, we reduce the verification of temporal flow properties to a circuit model checking problem that can be solved with effective verification techniques like IC3, interpolation, and bounded model checking. We report on encouraging experiments with a prototype implementation based on the hardware model checker ABC.
Item Type: | Conference or Workshop Item (A Paper) (Paper) |
---|---|
Conference: | ATVA International Symposium on Automated Technology for Verification and Analysis |
Depositing User: | Bernd Finkbeiner |
Date Deposited: | 25 May 2020 11:39 |
Last Modified: | 11 May 2021 13:50 |
Primary Research Area: | NRA2: Reliable Security Guarantees |
URI: | https://publications.cispa.saarland/id/eprint/3083 |
Actions
Actions (login required)
View Item |