A Security Mechanism for Detecting Nonfeasance on Inter-domain Routing Forwarding

Chen Zhao,Hanbing Yan,Wang Tang
DOI: https://doi.org/10.1007/978-81-322-2580-5_106
2015-01-01
Abstract:The inter-domain routing system faces serious security threats for lack of effective security mechanisms. Although many security solutions have addressed anomaly forwarding of Border Gateway Protocol (BGP) routes, the research is short of nonfeasance behavior. Based on AS relationships between two-hop distance neighbors, a security mechanism called TwoReply is designed for detecting nonfeasance through introducing feedback approach into the process of BGP route announcements. Furthermore, combined of BGP route selection, TwoReply offers an efficient penalty algorithm to select secure path. Security and performance analysis demonstrate that this mechanism can detect nonfeasance behavior effectively with few route resource consumption. It improves the overall security of inter-domain routing system and has good scalability.
What problem does this paper attempt to address?