Survey on decentralized security-enhanced technologies for RPKI

Autor: QIN Chaoyi, ZHANG Yu, FANG Binxing
Jazyk: čínština
Rok vydání: 2024
Předmět:
Zdroj: Tongxin xuebao, Vol 45, Pp 196-205 (2024)
Druh dokumentu: article
ISSN: 1000-436X
DOI: 10.11959/j.issn.1000-436x.2024102
Popis: The resource public key infrastructure (RPKI) deploys a centralized and hierarchical infrastructure for the authorization of IP addresses. It not only enhances the security of the Internet border gateway protocol system, but also introduces centralization into the routing system. According to the functions of the certificate authorities, the authorization center, operation center, and publication center in the RPKI were proposed, and a comprehensive survey on decentralized security-enhanced technologies for the RPKI were presented based on these three centers. Firstly, RPKI centralization risks were refined from the perspective of authorization, operation and publication. Secondly, the technical ideas and solutions of decentralized security-enhanced technologies were classified into these three perspectives. Thirdly, technologies were compared in terms of security, scalability, and incremental deployment. Finally, the existing problems in current technologies were summarized and the future research directions were prospected.
Databáze: Directory of Open Access Journals