期刊文献+

域间路由系统脆弱性及其应对措施 被引量:2

Vulnerabilities and Its Countermeasures of Inter-domain Routing System
下载PDF
导出
摘要 域间路由系统是互联网的关键基础设施,然而它却面临着严重的安全挑战。本文分析了域间路由协议BGP(边界网关协议)存在的脆弱性,构建了域间路由系统攻击模型,阐述了域间路由系统中基于链路和基于路由器节点的攻击模式,并指出这些攻击可能造成的危害,接着讨论了目前正在应用和研究的一些安全对策,并对路由过滤机制和协议扩展两种对策进行了性能比较。 Inter-domain routing system is a critical component of the Interoet routing infrastructure, however, it suffers more and more security problems nowadays. This paper analyses the vulnerabilities of BGP routing protocol, constructing an attack model of inter-domain routing system and expatiating two attack modes in the inter-domain routing system, including the attack mode based on BGP session and BGP routers, and it also indicates what harm these attack can do on the inter-domain routing system. It reviews the main on such attacks, and finally we compare router falter mechanism with protocol extending approach to find which is more effective.
出处 《电信科学》 北大核心 2007年第1期65-69,共5页 Telecommunications Science
基金 国家自然科学基金资助项目(No.60673169) 现代通信国家重点实验室基金资助项目(No.51436050605KG0102) 国家"863"计划资金资助项目(No.2006AA01Z213)
关键词 域间路由系统 攻击机制 安全对策 inter-domain system, routing attack mechanism, security countermeasure
  • 相关文献

参考文献11

  • 1Chakrabarti A,Manimaran G.Internet infrastructure security:a taxonomy.IEEE Network,2002,16(6):13~21
  • 2Kevin B,Toni F,Patrick M,et al.A survey of BGP security.In:Proceedings of ACM Internet Measurement Workshop,New Orleans,LA,Nov 2005
  • 3Barbir A,Murphy S,Yang Y.Genetic threats to routing protocols.Internet Draft,2003
  • 4Rekhter Y,Li T.A border gateway protocol.RFC 1771 (BGP version 4),1995
  • 5Zhao X,Pei D,Wang L,et a1.Analysis of BGP multiple origin AS (MOAS) conflicts.In:Proceedings of ACM SIGCOMM Internet Measurement Workshop,San Francisco,USA,November 2001
  • 6Jeff D,Jennifer D C 著.毕立波,魏亮,刘述译.TCP/IP路由技术(第二卷).北京:人民邮电出版社,2002
  • 7Mao Z M,Govindan R,Varghese G,et a1.Route flap damping exacerbates Internet routing convergence.In:Proceedings of ACM SIGCOMM Internet Measurement Workshop,Marseilles,France,Oct 2002
  • 8Gill V,Heasley J,Meyer D.The BGP TTL security hack(BTSH).In:NANOG-27 Meeting,Phoenix,AZ,US,Oct 2002
  • 9Kent S,Atkinson R.Security architecture for the Internet protocol.RFC 2401,November 1998
  • 10Kent S,Lynn C,Seo K.Secure border gateway protocol (S-BGP).IEEE Journal on Selected Areas in Communications,2000,18(4):582-592

同被引文献3

引证文献2

二级引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部