Border gateway protocol graph: detecting and visualising internet routing anomalies

被引:6
|
作者
Papadopoulos, Stavros [1 ]
Moustakas, Konstantinos [2 ]
Drosou, Anastasios [3 ]
Tzovaras, Dimitrios [3 ]
机构
[1] Univ London Imperial Coll Sci Technol & Med, Dept Elect & Elect Engn, London SW7 2AZ, England
[2] Univ Patras, Dept Elect & Comp Engn, Rio Campus, Patras 26504, Greece
[3] Ctr Res & Technol Hellas, Inst Informat Technol, 6th Km Xarilaou, Thessaloniki 57001, Greece
关键词
BGP;
D O I
10.1049/iet-ifs.2014.0525
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Border gateway protocol (BGP) is the main protocol used on the Internet today, for the exchange of routing information between different networks. The lack of authentication mechanisms in BGP, render it vulnerable to prefix hijacking attacks, which raise serious security concerns regarding both service availability and data privacy. To address these issues, this study presents BGPGraph, a scheme for detecting and visualising Internet routing anomalies. In particular, BGPGraph introduces a novel BGP anomaly metric that quantifies the degree of anomaly on the BGP activity, and enables the analyst to obtain an overview of the BGP status. The analyst, is afterwards able to focus on significant time windows for further analysis, by using a hierarchical graph visualisation scheme. Furthermore, BGPGraph uses a novel method for the quantification of information visualisation that allows for the evaluation, and optimal selection of parameters, in case of the corresponding visual analytics algorithms. As a result, by utilising the proposed approach, four new BGP anomalies were able to be identified. Experimental demonstration in known BGP events, illustrates the significant analytics potential of the proposed approach in terms of identifying prefix hijacks and performing root cause analysis.
引用
收藏
页码:125 / 133
页数:9
相关论文
共 50 条
  • [41] Multidomain SDN-Based Gateways and Border Gateway Protocol
    Alotaibi, Hamad Saud
    Gregory, Mark A.
    Li, Shuo
    JOURNAL OF COMPUTER NETWORKS AND COMMUNICATIONS, 2022, 2022
  • [42] Analysis of Border Gateway Protocol (BGP) with Improvement in Byzantine Robustness
    Verma, Rahul Deo
    Samaddar, Shefalika Ghosh
    2018 CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY (CICT'18), 2018,
  • [43] Border gateway protocol monitoring system can be cost effective
    Chen, K.
    Hu, C.
    IET COMMUNICATIONS, 2011, 5 (15) : 2231 - 2240
  • [44] Design of Protocol Conversion Gateway Based on Zigbee and Internet
    Yu, Chengbo
    Yan, Shaokui
    Hu, Jingjing
    Tian, Yingli
    Zhao, Xichao
    INTERNATIONAL SYMPOSIUM ON SIGNAL PROCESSING BIOMEDICAL ENGINEERING, AND INFORMATICS (SPBEI 2013), 2014, : 1065 - 1072
  • [45] Enhancing Border Gateway Protocol Security Using Public Blockchain
    Mastilak, Lukas
    Galinski, Marek
    Helebrandt, Pavol
    Kotuliak, Ivan
    Ries, Michal
    SENSORS, 2020, 20 (16) : 1 - 11
  • [46] Border Gateway Protocol Anomaly Detection Using Neural Network
    Karimi, Mohsen
    Jahanshahi, Ali
    Mazloumi, Abbas
    Sabzi, Hadi Zamani
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 6092 - 6094
  • [47] A Parallel Processing Method for Border Gateway Protocol UPDATE Messages
    Ding, Lina
    Wang, Xingwei
    Li, Fuliang
    Huang, Min
    2015 12th International Conference on Fuzzy Systems and Knowledge Discovery (FSKD), 2015, : 2044 - 2048
  • [48] Secure Multi-protocol Gateway for Internet of Things
    Amiruddin, Amiruddin
    Ratna, Anak Agung Putri
    Harwahyu, Ruki
    Sari, Riri Fitri
    2018 WIRELESS TELECOMMUNICATIONS SYMPOSIUM (WTS), 2018,
  • [49] Peculiarity of the Internet of Thing Traffic Routing, Selection of the Gateway Location
    Mahmood, Omar
    Paramonov, Alexander
    2018 10TH INTERNATIONAL CONGRESS ON ULTRA MODERN TELECOMMUNICATIONS AND CONTROL SYSTEMS AND WORKSHOPS (ICUMT 2018): EMERGING TECHNOLOGIES FOR CONNECTED SOCIETY, 2018,
  • [50] IMPROVING INTERNET ROUTING INFORMATION PROTOCOL
    WANG, T
    PENG, WX
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 1995, 10 (04): : 207 - 213