Border gateway protocol graph: detecting and visualising internet routing anomalies

被引:6
|
作者
Papadopoulos, Stavros [1 ]
Moustakas, Konstantinos [2 ]
Drosou, Anastasios [3 ]
Tzovaras, Dimitrios [3 ]
机构
[1] Univ London Imperial Coll Sci Technol & Med, Dept Elect & Elect Engn, London SW7 2AZ, England
[2] Univ Patras, Dept Elect & Comp Engn, Rio Campus, Patras 26504, Greece
[3] Ctr Res & Technol Hellas, Inst Informat Technol, 6th Km Xarilaou, Thessaloniki 57001, Greece
关键词
BGP;
D O I
10.1049/iet-ifs.2014.0525
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Border gateway protocol (BGP) is the main protocol used on the Internet today, for the exchange of routing information between different networks. The lack of authentication mechanisms in BGP, render it vulnerable to prefix hijacking attacks, which raise serious security concerns regarding both service availability and data privacy. To address these issues, this study presents BGPGraph, a scheme for detecting and visualising Internet routing anomalies. In particular, BGPGraph introduces a novel BGP anomaly metric that quantifies the degree of anomaly on the BGP activity, and enables the analyst to obtain an overview of the BGP status. The analyst, is afterwards able to focus on significant time windows for further analysis, by using a hierarchical graph visualisation scheme. Furthermore, BGPGraph uses a novel method for the quantification of information visualisation that allows for the evaluation, and optimal selection of parameters, in case of the corresponding visual analytics algorithms. As a result, by utilising the proposed approach, four new BGP anomalies were able to be identified. Experimental demonstration in known BGP events, illustrates the significant analytics potential of the proposed approach in terms of identifying prefix hijacks and performing root cause analysis.
引用
收藏
页码:125 / 133
页数:9
相关论文
共 50 条
  • [31] DoIP: A Parallel Protocol Conversion Gateway for DMR over Internet Protocol
    Wang, Wenkai
    Zhu, Lina
    Luan, Toni H.
    Li, Changle
    2023 IEEE 97TH VEHICULAR TECHNOLOGY CONFERENCE, VTC2023-SPRING, 2023,
  • [32] Detecting anomalies in graph networks on digital markets
    Skorupka, Agata
    PLOS ONE, 2024, 19 (12):
  • [33] Detecting anomalies in cargo using graph properties
    Eberle, William
    Holder, Lawrence
    INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2006, 3975 : 728 - 730
  • [34] A formal model for checking the convergence property of border gateway protocol
    Yin, Ping
    Ma, Yinxue
    ICIC Express Letters, Part B: Applications, 2014, 5 (06): : 1753 - 1758
  • [35] Optimized MRAI Timers for Border Gateway Protocol in Large Networks
    Shukla, Shipra
    Kumar, Mahesh
    INTERNATIONAL JOURNAL OF DISTRIBUTED SYSTEMS AND TECHNOLOGIES, 2019, 10 (04) : 31 - 44
  • [36] Border Gateway Protocol (BGP) and Traceroute Data Workshop Report
    Claffy, Kc
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2012, 42 (03) : 28 - 31
  • [37] Enhancing Border Gateway Protocol Security using Public Blockchain
    Shukla, Shipra
    Gupta, Swastika
    Rai, Misha
    Bhati, Muskan
    Chaudhary, Vanshika
    14th International Conference on Advances in Computing, Control, and Telecommunication Technologies, ACT 2023, 2023, 2023-June : 2381 - 2389
  • [38] Scalable Verification of Border Gateway Protocol Configurations with an SMT Solver
    Weitz, Konstantin
    Woos, Doug
    Torlak, Emina
    Ernst, Michael D.
    Krishnamurthy, Arvind
    Tatlock, Zachary
    ACM SIGPLAN NOTICES, 2016, 51 (10) : 765 - 780
  • [39] BGP-MX: Border Gateway Protocol with Mobility Extensions
    Kaddoura, Maher
    Trent, Barry
    Ramanujan, Ranga
    Hadynski, Gregory
    2011 - MILCOM 2011 MILITARY COMMUNICATIONS CONFERENCE, 2011, : 687 - 692
  • [40] A Survey of Advanced Border Gateway Protocol Attack Detection Techniques
    Scott, Ben A.
    Johnstone, Michael N.
    Szewczyk, Patryk
    SENSORS, 2024, 24 (19)