PrIXP: Preserving the privacy of routing policies at Internet eXchange Points
Autor: | Gabriele Lospoto, Massimo Rimondini, Giuseppe Di Battista, Roberto di Lallo, Habib Mostafaei, Marco Chiesa |
---|---|
Rok vydání: | 2017 |
Předmět: |
Routing protocol
Computer Sciences business.industry Route server Computer science Communication Systems Internet exchange point 020206 networking & telecommunications 020207 software engineering 02 engineering and technology Service provider Computer security computer.software_genre Datavetenskap (datalogi) Server Peering 0202 electrical engineering electronic engineering information engineering The Internet Routing (electronic design automation) business computer Kommunikationssystem Computer network |
Zdroj: | IM |
Popis: | Internet eXchange Points (IXPs) serve as landmarks where many network service providers meet to obtain reciprocal connectivity. Some of them, especially the largest, offer route servers as a convenient technology to simplify the setup of a high number of bi-lateral peerings. Due to their potential to support a quick and easy interconnection among the networks of multiple providers, IXPs are becoming increasingly popular and widespread, and route servers are exploited increasingly often. However, in an ever-growing level of market competition, service providers are pushed to develop concerns about many aspects that are strategic for their business, ranging from commercial agreements with other members of an IXP to the policies that are adopted in exchanging routing information with them. Although these aspects are notoriously sensitive for network service providers, current IXP architectures offer no guarantees to enforce the privacy of such business-critical information. We re-design a traditional route server and propose an approach to enforce the privacy of peering relationships and routing policies that it manages. Our proposed architecture ensures that nobody, not even a third party, can access such information unless it is the legitimate owner (i.e., the IXP member that set up the policy), yet allowing the route server to apply the requested policies and each IXP member to verify that such policies have been correctly deployed. We implemented the route server and tested our solutions in a simulated environment, tracking and analyzing the number of exchanged control plane messages. QC 20180207 |
Databáze: | OpenAIRE |
Externí odkaz: |