Not All Conflicts Are Created Equal: Automated Error Resolution in RPKI Deployments

IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (IEEE INFOCOM WKSHPS 2021)(2021)

引用 1|浏览16
暂无评分
摘要
We explore one of the central obstacles hindering Internet-wide adoption of RPKI: erroneous ROAs. The errors cause the ROV-filtering networks to drop legitimate traffic while leaving them exposed to hijack attacks. The fear of disconnection demotivates enforcement of ROV obviating the security benefits of RPKI. In this work we devise metrics for differentiating errors from traffic hijack attacks and evaluate them experimentally. We develop an extended ROV based on our metrics and integrate it into the ROV implementation of RIPE NCC, we call our extended validator ROV++. We evaluate the effectiveness of ROV++ in classifying conflicting BGP announcements via Internet experiments and simulations on empirically derived datasets.
更多
查看译文
关键词
automated error resolution,central obstacles,Internet-wide adoption,erroneous ROAs,filtering networks,legitimate traffic,security benefits,RPKI,differentiating errors,traffic hijack attacks,RIPE NCC,extended validator ROV,conflicting BGP announcements,Internet experiments
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要