Byzantine-Secure Relying Party for Resilient RPKI
Jens Frieß, Donika Mirdita, Haya Schulmann, Michael Waidner
摘要
BGP is a gaping hole in Internet security, as evidenced by numerous hijacks and outages. The significance of BGP for stability and security of the Internet has made it a top priority on the cyber security agenda of nation states, with the US government, in particular CISA, FCC, and other federal agencies leading the efforts 1 . To protect against prefix hijacks, Resource Public Key Infrastructure (RPKI) has been standardized. Yet, RPKI validation is not widely supported. To enjoy the security guarantees of RPKI validation, the networks need to install a new component, the relying party validator, which fetches and validates RPKI objects and provides them to border routers. However, recent works showed that relying parties experience failures when retrieving RPKI objects and are vulnerable to different attacks, all of which can disable RPKI validation. Therefore even the few adopters are not necessarily secure. We make the first proposal that significantly improves the resilience and security of RPKI validation. We develop BRP, a Byzan-tine-secure relying party implementation. In BRP the relying party nodes redundantly validate RPKI objects and arrive at a global consensus through a voting process. BRP provides an RPKI equivalent of public DNS, removing the need for networks to install, operate, and upgrade their own relying party instances while avoiding the need to trust operators of BRP nodes. We show through simulations and experimental evaluations that BRP, as an intermediate RPKI service, results in less load on RPKI publication points and a robust output despite RPKI repository failures, jitter, and attacks. We engineer BRP to be fully backward compatible and readily deployable -it does not require any changes to the border routers and the RPKI repositories. BRP enables independent verification by users of its correct operation. We demonstrate that BRP can protect many networks transparently, with either a decentralized or a centralized deployment. BRP can beset up as a network of decentralized volunteer deployments, similarly to NTP and TOR, where different operators participate in the peering process with their relying party node, and provide resilient and secure relying party validation to the Internet. BRP can also be hosted by a single operator as a centralized service, e.g., on one cloud or CDN, and even provides RPKI validation benefits when hosted on just a single network. We make the code of BRP and the evaluation data public 2 .
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper1
问问它们各自怎么用它它引用的顶会 Paper7
- The Honey Badger of BFT ProtocolsAndrew Miller, Yu Xia, Kyle Croman, Elaine Shi 等CCS 2016 · 被引用 974 次
- Beyond Limits: How to Disable Validators in Secure NetworksTomas Hlavacek, Philipp Jeitner, Donika Mirdita, Haya Schulmann 等SIGCOMM 2023 · 被引用 14 次
- ROV++: Improved Deployable Defense against BGP HijackingReynaldo Morillo, Justin Furuness, Cameron Morris, James Breslin 等NDSS 2021
- Alea-BFT: Practical Asynchronous Byzantine Fault ToleranceDiogo S. Antunes, Afonso N. Oliveira, André Breda, Matheus Guilherme Franco 等NSDI 2024
- The CURE to Vulnerabilities in RPKI ValidationDonika Mirdita, Haya Schulmann, Niklas Vogel, Michael WaidnerNDSS 2024
相关 Paper
- Stalloris: RPKI Downgrade AttackTomas Hlavacek, Philipp Jeitner, Donika Mirdita, Haya Schulmann 等USENIX Security 2022
- Keep Your Friends Close, but Your Routeservers Closer: Insights into RPKI Validation in the InternetTomas Hlavacek, Haya Schulmann, Niklas Vogel, Michael WaidnerUSENIX Security 2023
- DISCO: Sidestepping RPKI's Deployment BarriersTomas Hlavacek, Ítalo Cunha, Yossi Gilad, Amir Herzberg 等NDSS 2020
- SoK: An Introspective Analysis of RPKI SecurityDonika Mirdita, Haya Schulmann, Michael WaidnerUSENIX Security 2025
- Are We There Yet? On RPKI's Deployment and SecurityYossi Gilad, Avichai Cohen, Amir Herzberg, Michael Schapira 等NDSS 2017 · 被引用 108 次
