Neighborhood watch for Internet routing

Can we improve the robustness of Internet routing today?

Georgos Siganos, Michalis Faloutsos

Research output: Chapter in Book/Report/Conference proceedingConference contribution

21 Citations (Scopus)

Abstract

Protecting BGP routing from errors and malice is one of the next big challenges for Internet routing. Several approaches have been proposed that attempt to capture and block routing anomalies in a proactive way. In practice, the difficulty of deploying such approaches limits their usefulness. We take a different approach: we start by requiring a solution that can be easily implemented now. With this goal in mind, we consider ourselves situated at an AS, and ask the question: how can I detect erroneous or even suspicious routing behavior? We respond by developing a systematic methodology and a tool to identify such updates by utilizing existing public and local information. Specifically, we process and use the allocation records from the Regional Internet Registries (RIR), the local policy of the AS, and records used to generate filters from Internet Routing Registries (IRR). Using our approach, we can automatically detect routing leaks. Additionally, we identify some simple organizational and procedural issues that would significantly improve the usefulness of the information of the registries. Finally, we propose an initial set of rules with which an ISP can react to routing problems in a way that is systematic, and thus, could be automated.

Original languageEnglish
Title of host publicationProceedings - IEEE INFOCOM
Pages1271-1279
Number of pages9
DOIs
Publication statusPublished - 4 Sep 2007
Externally publishedYes
EventIEEE INFOCOM 2007: 26th IEEE International Conference on Computer Communications - Anchorage, AK, United States
Duration: 6 May 200712 May 2007

Other

OtherIEEE INFOCOM 2007: 26th IEEE International Conference on Computer Communications
CountryUnited States
CityAnchorage, AK
Period6/5/0712/5/07

Fingerprint

Internet

ASJC Scopus subject areas

  • Electrical and Electronic Engineering
  • Hardware and Architecture

Cite this

Neighborhood watch for Internet routing : Can we improve the robustness of Internet routing today? / Siganos, Georgos; Faloutsos, Michalis.

Proceedings - IEEE INFOCOM. 2007. p. 1271-1279 4215733.

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Siganos, G & Faloutsos, M 2007, Neighborhood watch for Internet routing: Can we improve the robustness of Internet routing today? in Proceedings - IEEE INFOCOM., 4215733, pp. 1271-1279, IEEE INFOCOM 2007: 26th IEEE International Conference on Computer Communications, Anchorage, AK, United States, 6/5/07. https://doi.org/10.1109/INFCOM.2007.151
@inproceedings{6751f61c9f2045e1ba8b024474607b33,
title = "Neighborhood watch for Internet routing: Can we improve the robustness of Internet routing today?",
abstract = "Protecting BGP routing from errors and malice is one of the next big challenges for Internet routing. Several approaches have been proposed that attempt to capture and block routing anomalies in a proactive way. In practice, the difficulty of deploying such approaches limits their usefulness. We take a different approach: we start by requiring a solution that can be easily implemented now. With this goal in mind, we consider ourselves situated at an AS, and ask the question: how can I detect erroneous or even suspicious routing behavior? We respond by developing a systematic methodology and a tool to identify such updates by utilizing existing public and local information. Specifically, we process and use the allocation records from the Regional Internet Registries (RIR), the local policy of the AS, and records used to generate filters from Internet Routing Registries (IRR). Using our approach, we can automatically detect routing leaks. Additionally, we identify some simple organizational and procedural issues that would significantly improve the usefulness of the information of the registries. Finally, we propose an initial set of rules with which an ISP can react to routing problems in a way that is systematic, and thus, could be automated.",
author = "Georgos Siganos and Michalis Faloutsos",
year = "2007",
month = "9",
day = "4",
doi = "10.1109/INFCOM.2007.151",
language = "English",
isbn = "1424410479",
pages = "1271--1279",
booktitle = "Proceedings - IEEE INFOCOM",

}

TY - GEN

T1 - Neighborhood watch for Internet routing

T2 - Can we improve the robustness of Internet routing today?

AU - Siganos, Georgos

AU - Faloutsos, Michalis

PY - 2007/9/4

Y1 - 2007/9/4

N2 - Protecting BGP routing from errors and malice is one of the next big challenges for Internet routing. Several approaches have been proposed that attempt to capture and block routing anomalies in a proactive way. In practice, the difficulty of deploying such approaches limits their usefulness. We take a different approach: we start by requiring a solution that can be easily implemented now. With this goal in mind, we consider ourselves situated at an AS, and ask the question: how can I detect erroneous or even suspicious routing behavior? We respond by developing a systematic methodology and a tool to identify such updates by utilizing existing public and local information. Specifically, we process and use the allocation records from the Regional Internet Registries (RIR), the local policy of the AS, and records used to generate filters from Internet Routing Registries (IRR). Using our approach, we can automatically detect routing leaks. Additionally, we identify some simple organizational and procedural issues that would significantly improve the usefulness of the information of the registries. Finally, we propose an initial set of rules with which an ISP can react to routing problems in a way that is systematic, and thus, could be automated.

AB - Protecting BGP routing from errors and malice is one of the next big challenges for Internet routing. Several approaches have been proposed that attempt to capture and block routing anomalies in a proactive way. In practice, the difficulty of deploying such approaches limits their usefulness. We take a different approach: we start by requiring a solution that can be easily implemented now. With this goal in mind, we consider ourselves situated at an AS, and ask the question: how can I detect erroneous or even suspicious routing behavior? We respond by developing a systematic methodology and a tool to identify such updates by utilizing existing public and local information. Specifically, we process and use the allocation records from the Regional Internet Registries (RIR), the local policy of the AS, and records used to generate filters from Internet Routing Registries (IRR). Using our approach, we can automatically detect routing leaks. Additionally, we identify some simple organizational and procedural issues that would significantly improve the usefulness of the information of the registries. Finally, we propose an initial set of rules with which an ISP can react to routing problems in a way that is systematic, and thus, could be automated.

UR - http://www.scopus.com/inward/record.url?scp=34548310427&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=34548310427&partnerID=8YFLogxK

U2 - 10.1109/INFCOM.2007.151

DO - 10.1109/INFCOM.2007.151

M3 - Conference contribution

SN - 1424410479

SN - 9781424410477

SP - 1271

EP - 1279

BT - Proceedings - IEEE INFOCOM

ER -