Analysis of Impact of Trust on Secure Border Gateway Protocol

被引:0
|
作者
Israr, Junaid [1 ]
Guennoun, Mouhcine [1 ]
Mouftah, Hussein T. [1 ]
机构
[1] Univ Ottawa, Sch Informat Technol & Engn, Ottawa, ON, Canada
关键词
S-BGP; Trust Model; Digital Signature;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Secure Border Gateway Protocol (S-BGP) mandates that upon reception of a BGP UPDATE message, an S-BGP speaker must verify nested signatures of all nodes in the traversed path; and the router should verify the Address Attestation to check if the source has the right to announce the address prefix. Due to several digital signatures required in each UPDATE, there is a high CPU overhead associated with S-BGP. In this paper, we propose a new approach that reduces the burden of validating the AS-path and the address prefix origination. We define a control layer of trusted nodes that is comprised of major Autonomous Systems (ASes) in the network. In this environment, an AS has to verify only the signatures of intermediate ASes between itself and the last trusted node in the AS-path. Similarly, the address prefix is validated only if it was not previously validated by a trusted AS. Using an original analytical model as well as a simulation model, we measured performance metrics of the new proposal. We show that even with small ratio of trusted nodes, the new scheme can significantly reduce the number of verifications required to validate the AS-path and IP prefixes and the number of public keys required by S-BGP.
引用
收藏
页数:6
相关论文
共 50 条
  • [31] Enhancing Border Gateway Protocol Security Using Public Blockchain
    Mastilak, Lukas
    Galinski, Marek
    Helebrandt, Pavol
    Kotuliak, Ivan
    Ries, Michal
    SENSORS, 2020, 20 (16) : 1 - 11
  • [32] Border Gateway Protocol Anomaly Detection Using Neural Network
    Karimi, Mohsen
    Jahanshahi, Ali
    Mazloumi, Abbas
    Sabzi, Hadi Zamani
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 6092 - 6094
  • [33] A Parallel Processing Method for Border Gateway Protocol UPDATE Messages
    Ding, Lina
    Wang, Xingwei
    Li, Fuliang
    Huang, Min
    2015 12th International Conference on Fuzzy Systems and Knowledge Discovery (FSKD), 2015, : 2044 - 2048
  • [34] Secure Multi-Protocol Mapping Gateway in Smart Grid
    Cheo, Kim Jin
    Wan, Park Sung
    Gu, Lee Yong
    Won, Lee Seung
    ADVANCES ON BROAD-BAND WIRELESS COMPUTING, COMMUNICATION AND APPLICATIONS, 2017, 2 : 411 - 418
  • [35] An Anonymous Secure Payment Protocol in a Payment Gateway Centric Model
    Tellez Isaac, Jesus
    Zeadally, Sherali
    ANT 2012 AND MOBIWIS 2012, 2012, 10 : 758 - 765
  • [36] Optimal detection of border gateway protocol anomalies with extensive feature set
    Sunita, M.
    Mallapur, Sujata V.
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 83 (17) : 50893 - 50919
  • [37] Border gateway protocol graph: detecting and visualising internet routing anomalies
    Papadopoulos, Stavros
    Moustakas, Konstantinos
    Drosou, Anastasios
    Tzovaras, Dimitrios
    IET INFORMATION SECURITY, 2016, 10 (03) : 125 - 133
  • [38] STAC-Protocol: Secure and Trust Anonymous Communication Protocol for IoT
    Jebri, Sarra
    Abid, Mohamed
    Bouallegue, Ammar
    2017 13TH INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING CONFERENCE (IWCMC), 2017, : 365 - 370
  • [39] Route Advertisement Policies for Border Gateway Protocol with Provider Aggregatable Addressing
    Al Muktadir, Abu Hena
    Fujikawa, Kenji
    Harai, Hiroaki
    2016 IEEE 17TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE SWITCHING AND ROUTING (HPSR), 2016, : 42 - 48
  • [40] An improved energy efficient quality of service routing for border gateway protocol
    Shukla, Shipra
    Kumar, Mahesh
    COMPUTERS & ELECTRICAL ENGINEERING, 2018, 67 : 520 - 535