Title :
Detecting and recovering prefix hijacking using multi-agent inter-AS diagnostic system
Author :
Seto, Saburo ; Tateishi, Naoki ; Nishio, Manabu ; Seshake, Hikaru
Author_Institution :
NTT Network Service Syst. Labs., Nippon Telegraph & Telephone Corp., Tokyo, Japan
Abstract :
The Internet is a collection of autonomous systems (ASes), and each AS exchanges routing information with neighboring ASes using the Border Gateway Protocol (BGP). Prefix hijacking is a representative example of communication failure caused by wrong routing information exchange. When an AS´s prefix is hijacked by invalid BGP routing information advertisement from another AS, the hijacked AS cannot communicate with other ASes because the traffic is delivered to the hijacking AS, not to the hijacked AS. To solve this problem, we have been researching and developing technologies that detect, recover, and prevent prefix hijacking. In this paper, we focus on detection and recovery functions. We propose two detection techniques using ping tests and checking AS_PATH change to improve the accuracy of prefix hijacking detection. For the recovery function, we propose two methods to reduce the downtime of communication failure: retaking the hijacked prefix and preventing distribution of the hijacked prefix.
Keywords :
Internet; computer network security; multi-agent systems; routing protocols; Internet; autonomous systems; border gateway protocol; hijacked prefix prevention method; hijacked prefix retaking method; inter-AS diagnostic system; multi-agent system; ping tests; prefix hijacking detection; prefix hijacking recovery; routing information exchange; Databases; Digital signatures; Helium; IP networks; Internet; Large-scale systems; Monitoring; Routing protocols; Testing; Border Gateway Protocol (BGP); Communication Recovery; Prefix Hijacking;
Conference_Titel :
Network Operations and Management Symposium (NOMS), 2010 IEEE
Conference_Location :
Osaka
Print_ISBN :
978-1-4244-5366-5
Electronic_ISBN :
1542-1201
DOI :
10.1109/NOMS.2010.5488348