Affiliation:
1. Southwest Jiaotong University, School of Information Science and Technology, China
2. Sun Yat-sen University, School of Information Science and Technology, China + University of Adelaide, School of Computer Science Australia
Abstract
To resolve the difficulties in deployment of the classic security solution
S-BGP (Secure Border Gateway Protocol), the Translator Trust Model (TTM) for
a new solution SE-BGP (Security Enhanced BGP) was proposed to transform the
centralized deployment mode of S-BGP to distributed mode. However, the trust
(attestations of routing information) translation of TTM only depends on a
single hub node and this results in severe threats for the inter-domain
routing system. To overcome the deficiencies of TTM, in this paper we improve
TTM to Distributed TTM (DTTM) by expanding the single hub node to a set of
selected multiple hub nodes; in our DTTM, the task of attestations is
distributed over multiple hub nodes instead of on a single hub node. In order
to make the hub nodes respond to the case of single node failures, we design
a restoration mechanism to recover the network based on the neighbour-ring
structure. Besides, we develop Cooperative Secure BGP (CSBGP) to realize DTTM
in BGP. In comparison with SE-BGP, our experimental results show that CS-BGP
achieves an improved scalability, reduced convergence time and enhanced
security.
Publisher
National Library of Serbia
Cited by
1 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献