DocumentCode :
3479636
Title :
Hierarchical Origin and Path verification for securing inter-domain routing protocol
Author :
Sharma, Gaurav ; Ragha, Lata
Author_Institution :
Dept. of Comput. Eng., Ramrao Adik Inst. of Technol., Mumbai, India
fYear :
2011
fDate :
18-21 Dec. 2011
Firstpage :
1
Lastpage :
6
Abstract :
Border Gateway Protocol (BGP 4) has emerged as the de facto inter-domain routing protocol used for making the core routing decisions on the Internet. However, it is not a secured protocol and suffers from serious security flaws such as no Origin AS Prefix verification and no AS Path verification. These two flaws in the BGP protocol can result in the attacks such as Prefix Hijacking and AS_PATH Forgery. These flaws are present in BGP due to lack of mechanisms for validating the actual source and path of the BGP UPDATE message. Many alternatives for the BGP such as S-BGP, SoBGP, etc. have been proposed but they are not compatible with the BGP and we need to replace BGP completely with them. The proposed method is a complimentary protocol to the BGP and verifies the Origin AS and the AS_PATH advertised in the BGP UPDATE message. The proposed Hierarchical Origin & Path (HOP) Verification method can be deployed in the current setting and works along with BGP. It can also be deployed in a scalable manner and can also work along with the ASes which do not follow HOP Verification method, thereby, solving all the deployment issues.
Keywords :
routing protocols; security of data; AS Path verification; AS_PATH Forgery; ASes; BGP 4; BGP UPDATE message; BGP protocol; Border Gateway Protocol; HOP verification method; Hierarchical Origin and Path; Internet; Origin AS Prefix verification; Prefix Hijacking; S-BGP; SoBGP; core routing decisions; hierarchical origin; inter-domain routing protocol; path verification; secured protocol; security flaws; Internet; Public key; Routing; Routing protocols; Servers; AS Path Forgery; AS Path Injection; BGP; HOP Verification; IRV; Prefix Hijacking; RCS; S-BGP; SoBGP;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Advanced Networks and Telecommunication Systems (ANTS), 2011 IEEE 5th International Conference on
Conference_Location :
Bangalore
ISSN :
2153-1676
Print_ISBN :
978-1-4673-0093-3
Type :
conf
DOI :
10.1109/ANTS.2011.6163660
Filename :
6163660
Link To Document :
بازگشت