Title | DARSHANA: Detecting Route Hijacking For Communication Confidentiality |
Publication Type | Conference Paper |
Year of Publication | 2016 |
Authors | Balu K, Pardal M, Correia M |
Conference Name | The 15th IEEE International Symposium on Network Computing and Applications (NCA 2016) |
Date Published | 31 October-2 Nov |
Publisher | IEEE Computer Society |
Conference Location | Cambridge, MA USA |
Abstract | The Border Gateway Protocol (BGP) plays a critical role in the Internet providing connectivity to hosts across the world. Unfortunately, due to its limited security, attackers can hijack traffic by generating invalid routes. Some detection systems for route hijacking have been presented, but they require non-public information, high resources, or can easily be circumvented by attackers. We propose DARSHANA, a monitoring solution that detects route hijacking based solely on data-plane information, and has enough redundancy to prevent attacker countermeasures such as dropping of traceroute probes. DARSHANA uses active probing techniques that enable detection in near real-time. By using diverse methods, DARSHANA can still detect attacks even if the adversary manages to counter some |
URL | http://www.safecloud-project.eu/sites/safecloud-project.eu/files/uploads/docs/publications/NCA_2016.pdf |
DOI | 10.1109/NCA.2016.7778593 |
DARSHANA: Detecting Route Hijacking For Communication Confidentiality
Apr
13
2017
By Paula Rodrigues