Communication on the Internet consisting of a massive number of Autonomous Systems (AS) depends on routing based on Border Gateway Protocol (BGP). Routers generally trust the veracity of information in BGP updates from their neighbors, as with many other routing protocols. However, this trust leaves the whole system vulnerable to multiple attacks, such as BGP hijacking. Several solutions have been proposed to increase the security of BGP routing protocol, most based on centralized Public Key Infrastructure, but their adoption has been relatively slow. Additionally, these solutions are open to attack on this centralized system. Decentralized alternatives utilizing blockchain to validate BGP updates have recently been proposed. The distributed nature of blockchain and its trustless environment increase the overall system security and conform to the distributed character of the BGP. All of the techniques based on blockchain concentrate on inspecting incoming BGP updates only. In this paper, we improve on these by modifying an existing architecture for the management of network devices. The original architecture adopted a private blockchain implementation of HyperLedger. On the other hand, we use the public blockchain Ethereum, more specifically the Ropsten testing environment. Our solution provides a module design for the management of AS border routers. It enables verification of the prefixes even before any router sends BGP updates announcing them. Thus, we eliminate fraudulent BGP origin announcements from the AS deploying our solution. Furthermore, blockchain provides storage options for configurations of edge routers and keeps the irrefutable history of all changes. We can analyze router settings history to detect whether the router advertised incorrect information, when and for how long.
Download full-text PDF |
Source |
---|---|
http://www.ncbi.nlm.nih.gov/pmc/articles/PMC7472367 | PMC |
http://dx.doi.org/10.3390/s20164482 | DOI Listing |
Comput Biol Chem
December 2024
Facultad de Ingeniería y Ciencias, Univ. Adolfo Ibáñez, Av. Diagonal Las Torres 2700, Peñalolen, Santiago, Chile; Center of Applied Ecology and Sustainability (CAPES), Santiago, Chile; Millennium Nucleus for the Development of Super Adaptable Plants (MN-SAP), Santiago, Chile.
Gonadal sex determination (GSD) is a complex but poorly understood process in the early stages of embryonic development. This process determines whether the bipotential gonadal primordium (BGP) will differentiate into testes or ovaries through the activation of genetic factors related to Sertoli or Granulosa cells, respectively. The study of this developmental process remains challenging due to experimental limitations and the complexity of the underlying genetic interactions.
View Article and Find Full Text PDFSensors (Basel)
August 2020
Faculty of Informatics and Information Technologies, Slovak University of Technology in Bratislava, Ilkovicova 2, 842 16 Bratislava, Slovakia.
Communication on the Internet consisting of a massive number of Autonomous Systems (AS) depends on routing based on Border Gateway Protocol (BGP). Routers generally trust the veracity of information in BGP updates from their neighbors, as with many other routing protocols. However, this trust leaves the whole system vulnerable to multiple attacks, such as BGP hijacking.
View Article and Find Full Text PDFComput Commun
July 2017
National Institute of Standards and Technology, Gaithersburg, MD, USA.
The Internet is subject to attacks due to vulnerabilities in its routing protocols. One proposed approach to attain greater security is to cryptographically protect network reachability announcements exchanged between Border Gateway Protocol (BGP) routers. This study proposes and evaluates the performance and efficiency of various optimization algorithms for validation of digitally signed BGP updates.
View Article and Find Full Text PDFPLoS One
June 2016
Department of Physics, Northeastern University, Boston, MA, United States of America; Department of Mathematics, Northeastern University, Boston, MA, United States of America; Department of Electrical&Computer Engineering, Northeastern University, Boston, MA, United States of America.
Data transfer is one of the main functions of the Internet. The Internet consists of a large number of interconnected subnetworks or domains, known as Autonomous Systems (ASes). Due to privacy and other reasons the information about what route to use to reach devices within other ASes is not readily available to any given AS.
View Article and Find Full Text PDFEnter search terms and have AI summaries delivered each week - change queries or unsubscribe any time!