首页> 外文OA文献 >AS-TRUST: A Trust Quantification Scheme for Autonomous Systems in BGP
【2h】

AS-TRUST: A Trust Quantification Scheme for Autonomous Systems in BGP

机译:AS-TRUST:BGP中自治系统的信任量化方案

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

The Border Gateway Protocol (BGP) works by frequently exchanging updates that disseminate reachability information about IP prefixes (i.e., IP address blocks) between Autonomous Systems (ASes) on the Internet. The ideal operation of BGP relies on three major behavioral assumptions (BAs): (1) information contained in the update is legal and correct, (2) a route to a prefix is stable, and (3) the route adheres to the valley free routing policy. The current operation of BGP implicitly trusts all ASes to adhere to these assumptions. However, several documented violation of these assumptions attest to the fact that such an assumption of trust is perilous. This paper presents AS-TRUST, a scheme that comprehensively characterizes the trustworthiness of ASes with respect to their adherence of the behavioral assumptions. AS-TRUST quantifies trust using the notion of AS reputation. To compute reputation, AS-TRUST analyzes updates received in the past. It then classifies the resulting observations into multiple types of feedback. The feedback is used by a reputation function that uses Bayesian statistics to compute a probabilistic view of AS trustworthiness. This information can then be used for improving quotidian BGP operation by enabling improved route preference and dampening decision making at the ASes. Our implementation of AS-TRUST scheme using publicly available BGP traces demonstrates: (1) the number of ASes involved in violating the BGP behavioral assumptions is significant, and (2) the proposed reputation mechanism provides multi-fold improvement in the ability of ASes to operate in the presence of BA violations.
机译:边界网关协议(BGP)通过频繁地交换更新来工作,这些更新在Internet上的自治系统(ASes)之间传播有关IP前缀(即IP地址块)的可达性信息。 BGP的理想操作依赖于三个主要的行为假设(BA):( 1)更新中包含的信息是合法且正确的;(2)到达前缀的路由是稳定的;以及(3)该路由不依赖于山谷路由策略。 BGP的当前操作隐式地信任所有AS遵守这些假设。但是,一些记录在案的违反这些假设的事实证明,这种信任假设是危险的。本文介绍了AS-TRUST,它是一种在遵循行为假设方面全面描述AS的可信赖性的方案。 AS-TRUST使用AS信誉的概念来量化信任。为了计算信誉,AS-TRUST会分析过去收到的更新。然后将所得的观察结果分类为多种类型的反馈。信誉函数使用贝叶斯统计信息来计算反馈,以计算AS可信度的概率视图。然后,通过启用改进的路由首选项和抑制AS处的决策,可以将该信息用于改善quotidian BGP操作。我们使用公开的BGP跟踪对AS-TRUST方案的实施证明:(1)违反BGP行为假设的AS数量很大,并且(2)所提出的信誉机制使AS具备以下能力:在违反BA的情况下运行。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号