DocumentCode
3479636
Title
Hierarchical Origin and Path verification for securing inter-domain routing protocol
Author
Sharma, Gaurav ; Ragha, Lata
Author_Institution
Dept. of Comput. Eng., Ramrao Adik Inst. of Technol., Mumbai, India
fYear
2011
fDate
18-21 Dec. 2011
Firstpage
1
Lastpage
6
Abstract
Border Gateway Protocol (BGP 4) has emerged as the de facto inter-domain routing protocol used for making the core routing decisions on the Internet. However, it is not a secured protocol and suffers from serious security flaws such as no Origin AS Prefix verification and no AS Path verification. These two flaws in the BGP protocol can result in the attacks such as Prefix Hijacking and AS_PATH Forgery. These flaws are present in BGP due to lack of mechanisms for validating the actual source and path of the BGP UPDATE message. Many alternatives for the BGP such as S-BGP, SoBGP, etc. have been proposed but they are not compatible with the BGP and we need to replace BGP completely with them. The proposed method is a complimentary protocol to the BGP and verifies the Origin AS and the AS_PATH advertised in the BGP UPDATE message. The proposed Hierarchical Origin & Path (HOP) Verification method can be deployed in the current setting and works along with BGP. It can also be deployed in a scalable manner and can also work along with the ASes which do not follow HOP Verification method, thereby, solving all the deployment issues.
Keywords
routing protocols; security of data; AS Path verification; AS_PATH Forgery; ASes; BGP 4; BGP UPDATE message; BGP protocol; Border Gateway Protocol; HOP verification method; Hierarchical Origin and Path; Internet; Origin AS Prefix verification; Prefix Hijacking; S-BGP; SoBGP; core routing decisions; hierarchical origin; inter-domain routing protocol; path verification; secured protocol; security flaws; Internet; Public key; Routing; Routing protocols; Servers; AS Path Forgery; AS Path Injection; BGP; HOP Verification; IRV; Prefix Hijacking; RCS; S-BGP; SoBGP;
fLanguage
English
Publisher
ieee
Conference_Titel
Advanced Networks and Telecommunication Systems (ANTS), 2011 IEEE 5th International Conference on
Conference_Location
Bangalore
ISSN
2153-1676
Print_ISBN
978-1-4673-0093-3
Type
conf
DOI
10.1109/ANTS.2011.6163660
Filename
6163660
Link To Document