Route leak detection using real-time analytics on local BGP information

dc.contributor.authorSerral Gracià, René
dc.date.accessioned2021-11-08T21:01:12Z
dc.date.available2021-11-08T21:01:12Z
dc.date.issued2014
dc.description.abstractA route leak can be defined as a security gap that occurs due to the infringement of the routing policies that any two Autonomous Systems (ASes) have agreed upon. Route leaks are seemingly simple, but hard to resolve since the ASes keep their routing policies confidential. Indeed, the traditional palliatives, such as the utilization of route filters, are no longer used by a large number of ASes, given the high administrative burden that they entail. Other alternatives, like BGP monitoring tools, not only require third party information gathered at multiple vantage points, but also they become impotent in many cases, due to their limited view of the interdomain routing state. In this paper, we propose a different approach, which allows to autonomously detect the occurrence of route leaks by solely inspecting the BGP information available at the AS. Our main contributions can be summarized as follows. First, we propose a self-contained Route Leak Detection (RLD) technique, which is based on real-time analytics on the Route Information Bases (RIBs) of the border routers of an AS. Second, we introduce Benign Fool Back (BFB), "a harmless bluff" that can substantially improve the success rate of the RLD technique. Third, we show through exhaustive simulations that our technique can detect route leak incidents in various scenarios with high success rate. In addition, our solution has the following practical advantages: a) no reliance on third party information (e.g., on vantage points); b) no changes required to control-plane protocols (e.g., to BGP); and c) allows non-invasive integration (e.g., using SDN).
dc.description.cityAustin
dc.identifier.doi10.1109/GLOBECOM18177.2014 8-12 Dec. 2014
dc.identifier.isbn978-1-4799-3512-3
dc.identifier.issn1930-529X
dc.identifier.urihttp://dspace.ucuenca.edu.ec/handle/123456789/37310
dc.identifier.urihttps://ieeexplore.ieee.org/document/7037092
dc.language.isoes_ES
dc.publisherIEEE
dc.sourceIEEE Conference and Exhibition on Global Telecommunications (GLOBECOM)
dc.subjectRoute leaks
dc.titleRoute leak detection using real-time analytics on local BGP information
dc.typeARTÍCULO DE CONFERENCIA
dc.ucuenca.afiliacionSerral, R., Universitat Politécnica de Catalunya (UPC), Barcelona, España
dc.ucuenca.areaconocimientofrascatiamplio2. Ingeniería y Tecnología
dc.ucuenca.areaconocimientofrascatidetallado2.2.4 Ingeniería de La Comunicación y de Sistemas
dc.ucuenca.areaconocimientofrascatiespecifico2.2 Ingenierias Eléctrica, Electrónica e Información
dc.ucuenca.areaconocimientounescoamplio06 - Información y Comunicación (TIC)
dc.ucuenca.areaconocimientounescodetallado0612 - Base de Datos, Diseno y Administración de Redes
dc.ucuenca.areaconocimientounescoespecifico061 - Información y Comunicación (TIC)
dc.ucuenca.comiteorganizadorconferenciaIEEE
dc.ucuenca.conferencia2014 IEEE Global Communications Conference
dc.ucuenca.correspondenciaSiddiqui Shoaib, Muhammad, siddiqui@ac.upc.edu
dc.ucuenca.fechafinconferencia2014-12-12
dc.ucuenca.fechainicioconferencia2014-12-08
dc.ucuenca.idautor0000-0003-2112-0952
dc.ucuenca.indicebibliograficoSIN INDEXAR
dc.ucuenca.numerocitaciones0
dc.ucuenca.organizadorconferenciaIEEE
dc.ucuenca.paisESTADOS UNIDOS
dc.ucuenca.urifuentehttps://ieeexplore.ieee.org/xpl/conhome/7008954/proceeding?pageNumber=2
dc.ucuenca.versionVersión publicada
dc.ucuenca.volumenVolumen 0

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
documento.pdf
Size:
154.91 KB
Format:
Adobe Portable Document Format
Description:
document

Collections