On the classification and false alarm of invalid prefixes in RPKI based BGP route origin validation

被引:0
|
作者
Xu, Wenjie [1 ]
Chang, Deliang [1 ]
Li, Xing [1 ]
机构
[1] Tsinghua Univ, Dept Elect Engn, Beijing, Peoples R China
关键词
BGP; RPKI; ROV;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
BGP is the default inter- domain routing protocol in today's Internet, but has serious security vulnerabilities [1]. One of them is (sub) prefix hijacking. IETF standardizes RPKI to validate the AS origin but RPKI has a lot of problems [2] [3] [4] [5], among which is potential false alarm. Although some previous work [4] [2] points it out explicitly or implicitly, further measurement and analysis remain to be done. Our work measures and analyzes the invalid prefixes systematically. We first classify the invalid prefixes into six different types and then analyze their stability. We show that a large proportion of the invalid prefixes very likely result from traffic engineering, IP address transfer and failing to aggregate rather than real hijackings.
引用
收藏
页码:654 / 658
页数:5
相关论文
共 11 条
  • [11] Hand-Crafted Feature Based Classification against Convolutional Neural Networks for False Alarm Reduction on Active Diver Detection Sonar Data
    Buss, Matthias
    Steiniger, Yannik
    Benen, Stephan
    Kraus, Dieter
    Kummert, Anton
    Stiller, Dietmar
    OCEANS 2018 MTS/IEEE CHARLESTON, 2018,