BGP Prefix Origin Validation

BGP Prefix Origin Validation
复制标题

BGP 前缀来源验证

DOI:
--
复制
发表时间:
2013
期刊:
Request for Comments
影响因子:
--
通讯作者:
Rob Austein
Rob Austein
中科院分区:
--
文献类型:
--
作者:
P. Mohapatra;John G. Scudder;D. Ward;R. Bush;Rob Austein

文献摘要

被引文献

相似文献

为了帮助减少针对BGP的已知威胁,包括前缀错误, 宣布和中间猴子攻击是安全措施之一 要求是能够验证起源自治 BGP路由系统(AS)。更具体地说,需要验证 声称发起地址前缀的AS号码(如导出的 从BGP路由的AS_PATH属性)实际上由 前缀保持器来执行此操作。本文档描述了一个简单的 验证机制,以部分满足这一要求。 [标准轨道]
To help reduce well-known threats against BGP including prefix mis- announcing and monkey-in-the-middle attacks, one of the security requirements is the ability to validate the origination Autonomous System (AS) of BGP routes. More specifically, one needs to validate that the AS number claiming to originate an address prefix (as derived from the AS_PATH attribute of the BGP route) is in fact authorized by the prefix holder to do so. This document describes a simple validation mechanism to partially satisfy this requirement. [STANDARDS-TRACK]