Add abstract
Want to add your dissertation abstract to this database? It only takes a minute!
Search abstract
Search for abstracts by subject, author or institution
Want to add your dissertation abstract to this database? It only takes a minute!
Search for abstracts by subject, author or institution
by Sergio Ricardo Hernández Torres
| Institution: | KTH |
|---|---|
| Department: | Electrical Engineering and Computer Science (EECS) |
| Degree: | |
| Year: | 2022 |
| Keywords: | BGP; IP; Routing; RPKI; Tier-1 ISP; Computer and Information Sciences; Data- och informationsvetenskap |
| Posted: | 3/25/2025 |
| Record ID: | 2272652 |
| Full text PDF: | http://urn.kb.se/resolve?urn=urn:nbn:se:kth:diva-322819 |
The BGP (Border Gateway Protocol) is responsible for establishing routing at the core of the Internet, yet it was not designed with security in mind. The Internet routing protocol is currently not secure — but its security can be enhanced. Initially conceived as a small community of trusted peers, the Internet has grown over time into a robust network of complex processes and securing these has become a priority. Thanks to the research community, the RPKI (Resource Public Key Infrastructure) protocol was designed to provide a layer of security to routing — by securing the origin, i.e., attesting that the source of the routing announcements is authorized to do so. As RPKI route validation has been recently widely adopted by multiple large carrier networks, many research projects have sought to measure the adoption of RPKI. This work aims to measure the adoption and the effects of RPKI route validation and filtering through the use of active experiments. A peering session was first established with one of the largest Tier-1 ISP: Arelion (formerly known as Telia Carrier) to announce and propagate a prefix with RPKI Valid, Invalid, and Unknown records. Then, the visibility of the prefix (in the control plane) and reachability of the prefix (in the data plane) was measured using visibility feeds from public BGP Route Collectors and reachability feeds from RIPE Atlas probes. The obtained results confirmed that some, but not all previously believed major networks, drop RPKI Invalid prefixes, affecting the destination network’s visibility. For networks that could still reach the destination, the data plane probes demonstrated that parameters such as the RTT and the hop count were not generally affected. A small increase in the destination network visibility was observed when comparing RPKI Valid with Unknown routes. All RPKI Valid Invalid and Unknown effects and their behavior are deeply analyzed. Data sets have been made publicly available for other researchers to analyze the data, and ensure the future of a more secure Internet. BGP (Border Gateway Protocol) används för att sprida routinginformation mellan routrar i de tusentals nätverk som tillsammans bildar Internet, men det utformades inte med säkerhet i åtanke. Protokollet är i grunden inte säkert - men det kan bli det. Det som ursprungligen var en liten grupp sammanlänkade universitetsnätverk växte med tiden till att bli Internet, ett robust globalt nätverk med komplexa processer för utbyte av routinginformation. I ett modernt samhälle där vi kommit till att förlita oss på dess existens och funktion så har det blivit en prioritet att säkra dessa. Tack vare initiativ tagna i forsknings- och utvecklingsgruppen IETF (Internet Engineering Taskforce) utformades RPKI (Resource Public Key Infrastructure) för att tillhandahålla ett säkerhetslager för routing – genom att säkra ursprunget till routinginformation. Eftersom RPKI-validering nyligen har anammats av flera stora operatörsnätverk, har många…
Want to add your dissertation abstract to this database? It only takes a minute!
Search for abstracts by subject, author or institution
|
|
Predicting the Admission Decision of a Participant...
|
|
|
Development of New Models Using Machine Learning M...
|
|
|
The Adaptation Process of a Resettled Community to...
A Study of the Nubian Experience in Egypt
|
|
|
Development of an Artificial Intelligence System f...
|
|
|
Theoretical and Experimental Analysis of Dissipati...
|
|
|
Optical Fiber Sensors for Residential Environments
|
|
|
Calibration of Deterministic Parameters
Reassessment of Offshore Platforms in the Arabian ...
|
|
|
How Passion Relates to Performance
A Study of Consultant Civil Engineers
|