计算机科学 ›› 2012, Vol. 39 ›› Issue (9): 55-59.

• 计算机网络与信息安全 • 上一篇    下一篇

互联网自治系统的前缀信誉模型

王娜,汪斌强   

  1. (解放军信息工程大学电子技术学院 郑州450004);(解放军信息工程大学 郑州450002);(河南省信息安全重点实验室 郑州450004)
  • 出版日期:2018-11-16 发布日期:2018-11-16

Internet Autonomous System Prefix Reputation Model

  • Online:2018-11-16 Published:2018-11-16

摘要: BGP面临的前缀劫持攻击会严重破坏互联网网络的可靠性。引入信任技术,构建自治系统的前缀信誉模型 (Autonomous System Prefix Reputation Model,简写为“AS-PRM")来评估自治系统发起真实前缀可达路由通告行为 的信任度。从而,自治系统可选择相对前缀信誉好的自治系统发起的前缀可达路由通告,来抑制前缀劫持攻击的发 生。AS-PRM模型根据多个前缀劫持攻击检测系统的检测结果(考虑了误报、漏报率),基于beta信誉系统,计算自治 系统的前缀信誉,并遵循“慢升快降”原则,更新前缀信誉。最后,仿真实验验证了模型的有效性。

关键词: BGP,前缀劫持攻击,信誉

Abstract: Prefix hijacking faced by 13GP can highly disrupt the Internet network reliability. By introducing trust tech- nology, the paper proposed an autonomous system prefix reputation model AS-PRM to evaluate the trust of an autono- mows system (AS) originating the prefix belonging to the AS. An AS selectively prefers the prefix route announcement originated by the AS with higher prefix reputation. As a result, prefix hijacking can be suppressed. According to multi- ple prefix hijacking detection systems' results,AS-PRM model computes AS prefix reputation based on the beta reputa- tion system, after considering false positives and false negatives of detection systems, and updates prefix reputation fol- lowing the "slowly rising, quickly falling" principle. In the end, the model validity was verified by simulation experi- ments.

Key words: BGP, Prefix hijacking, Reputation

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!