Byzantine-Secure Relying Party for Resilient RPKI

Jens Friess,Donika Mirdita,Haya Schulmann,Michael Waidner
2024-05-01
Abstract:To protect against prefix hijacks, Resource Public Key Infrastructure (RPKI) has been standardized. To enjoy the security guarantees of RPKI validation, networks need to install a new component, the relying party validator, which fetches and validates RPKI objects and provides them to border routers. However, recent work shows that relying parties experience failures when retrieving RPKI objects and are vulnerable to attacks, all of which can disable RPKI validation. Therefore even the few adopters are not necessarily secure.
Cryptography and Security
What problem does this paper attempt to address?