• DocumentCode
    3479636
  • Title

    Hierarchical Origin and Path verification for securing inter-domain routing protocol

  • Author

    Sharma, Gaurav ; Ragha, Lata

  • Author_Institution
    Dept. of Comput. Eng., Ramrao Adik Inst. of Technol., Mumbai, India
  • fYear
    2011
  • fDate
    18-21 Dec. 2011
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    Border Gateway Protocol (BGP 4) has emerged as the de facto inter-domain routing protocol used for making the core routing decisions on the Internet. However, it is not a secured protocol and suffers from serious security flaws such as no Origin AS Prefix verification and no AS Path verification. These two flaws in the BGP protocol can result in the attacks such as Prefix Hijacking and AS_PATH Forgery. These flaws are present in BGP due to lack of mechanisms for validating the actual source and path of the BGP UPDATE message. Many alternatives for the BGP such as S-BGP, SoBGP, etc. have been proposed but they are not compatible with the BGP and we need to replace BGP completely with them. The proposed method is a complimentary protocol to the BGP and verifies the Origin AS and the AS_PATH advertised in the BGP UPDATE message. The proposed Hierarchical Origin & Path (HOP) Verification method can be deployed in the current setting and works along with BGP. It can also be deployed in a scalable manner and can also work along with the ASes which do not follow HOP Verification method, thereby, solving all the deployment issues.
  • Keywords
    routing protocols; security of data; AS Path verification; AS_PATH Forgery; ASes; BGP 4; BGP UPDATE message; BGP protocol; Border Gateway Protocol; HOP verification method; Hierarchical Origin and Path; Internet; Origin AS Prefix verification; Prefix Hijacking; S-BGP; SoBGP; core routing decisions; hierarchical origin; inter-domain routing protocol; path verification; secured protocol; security flaws; Internet; Public key; Routing; Routing protocols; Servers; AS Path Forgery; AS Path Injection; BGP; HOP Verification; IRV; Prefix Hijacking; RCS; S-BGP; SoBGP;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advanced Networks and Telecommunication Systems (ANTS), 2011 IEEE 5th International Conference on
  • Conference_Location
    Bangalore
  • ISSN
    2153-1676
  • Print_ISBN
    978-1-4673-0093-3
  • Type

    conf

  • DOI
    10.1109/ANTS.2011.6163660
  • Filename
    6163660