An operational approach to validate the path of BGP


Autoria(s): Li, Ping; Zhou, Wanlei; Li, Ke
Data(s)

01/01/2008

Resumo

BGP (Border Gateway Protocol) is a fundamental component of the current Internet infrastructure. However, BGP is vulnerable to a variety of attacks, since it cannot ensure the authenticity of the path attributes announced by BGP routers. Despite several solutions have been proposed to address this vulnerability, none of them is operational in real-world due to their immense impact on original BGP. In this paper, we propose a Deployable Path Validation Authentication scheme, which can effectively validate the path of BGP. Through analysis and simulation we show that this scheme has little impact on the performance and memory usage for the original BGP, and can be adopted in practice as an operational approach. <br />

Identificador

http://hdl.handle.net/10536/DRO/DU:30017609

Idioma(s)

eng

Publicador

Springer

Relação

http://dro.deakin.edu.au/eserv/DU:30017609/zhou-operationalapproach-2008.pdf

http://dx.doi.org/10.1007/978-3-540-69501-1_15

Direitos

2008, Springer-Verlag Berlin Heidelberg

Palavras-Chave #BGP #security #AS #internet
Tipo

Journal Article