• DocumentCode
    2691524
  • Title

    Detecting and recovering prefix hijacking using multi-agent inter-AS diagnostic system

  • Author

    Seto, Saburo ; Tateishi, Naoki ; Nishio, Manabu ; Seshake, Hikaru

  • Author_Institution
    NTT Network Service Syst. Labs., Nippon Telegraph & Telephone Corp., Tokyo, Japan
  • fYear
    2010
  • fDate
    19-23 April 2010
  • Firstpage
    882
  • Lastpage
    885
  • Abstract
    The Internet is a collection of autonomous systems (ASes), and each AS exchanges routing information with neighboring ASes using the Border Gateway Protocol (BGP). Prefix hijacking is a representative example of communication failure caused by wrong routing information exchange. When an AS´s prefix is hijacked by invalid BGP routing information advertisement from another AS, the hijacked AS cannot communicate with other ASes because the traffic is delivered to the hijacking AS, not to the hijacked AS. To solve this problem, we have been researching and developing technologies that detect, recover, and prevent prefix hijacking. In this paper, we focus on detection and recovery functions. We propose two detection techniques using ping tests and checking AS_PATH change to improve the accuracy of prefix hijacking detection. For the recovery function, we propose two methods to reduce the downtime of communication failure: retaking the hijacked prefix and preventing distribution of the hijacked prefix.
  • Keywords
    Internet; computer network security; multi-agent systems; routing protocols; Internet; autonomous systems; border gateway protocol; hijacked prefix prevention method; hijacked prefix retaking method; inter-AS diagnostic system; multi-agent system; ping tests; prefix hijacking detection; prefix hijacking recovery; routing information exchange; Databases; Digital signatures; Helium; IP networks; Internet; Large-scale systems; Monitoring; Routing protocols; Testing; Border Gateway Protocol (BGP); Communication Recovery; Prefix Hijacking;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Operations and Management Symposium (NOMS), 2010 IEEE
  • Conference_Location
    Osaka
  • ISSN
    1542-1201
  • Print_ISBN
    978-1-4244-5366-5
  • Electronic_ISBN
    1542-1201
  • Type

    conf

  • DOI
    10.1109/NOMS.2010.5488348
  • Filename
    5488348