Title :
IBAPV: An identity-Based aggregate path verification protocol for securing BGP
Author :
Wang, Na ; Zhi, Yingjian ; Wang, Binqiang
Author_Institution :
PLA Inf. Eng. Univ., Zhengzhou, China
Abstract :
The paper proposes an identity-based aggregate path verification protocol (IBAPV) to provide authenticity for route announcements in the border gateway protocol (BGP) with a more efficient and easily deployed identity-based aggregate signature scheme instead of certificate-based scheme, which leads to performance and deployment matters of current proposals. Because in the identity-based cryptographic scheme, private key generator has the knowledge about the system master key and private keys of all users in the system, which is greatly risky in the real world, a distributed and hierarchical key issuing protocol (DHKI) is proposed to hold the privacy of these secrets in IBAPV. Compared with S-BGP, IBAPV simplifies key management process, consumes lesser memory and has shorter update message. Our simulation result indicates that convergence time of IBAPV with hardware implementation approximates BGP.
Keywords :
Internet; cryptographic protocols; digital signatures; private key cryptography; protocols; telecommunication network routing; BGP; IBAPV; Internet; border gateway protocol; distributed and hierarchical key issuing protocol; identity-based aggregate path verification protocol; identity-based aggregate signature scheme; identity-based cryptographic scheme; private key generator; routing; Aggregates; Cryptographic protocols; Electronic mail; Forgery; Identity-based encryption; Internet; Programmable logic arrays; Proposals; Public key cryptography; Routing; BGP; Interdomain routing; identity-based cryptography; security;
Conference_Titel :
Communication Systems, 2008. ICCS 2008. 11th IEEE Singapore International Conference on
Conference_Location :
Guangzhou
Print_ISBN :
978-1-4244-2423-8
Electronic_ISBN :
978-1-4244-2424-5
DOI :
10.1109/ICCS.2008.4737331