On Measuring RPKI Relying Parties

Link:
Autor/in:
Verlag/Körperschaft:
ACM ; New York
Erscheinungsjahr:
2020
Medientyp:
Text
Schlagworte:
  • Internet
  • Security
  • Routing
  • 004: Informatik
  • ddc:004
Beschreibung:
  • In this paper, we introduce a framework to observe RPKI relying parties (i.e., those that fetch RPKI data from the distributed repository) and present insights into this ecosystem for the first time. Our longitudinal study of data gathered from three RPKI certification authorities (AFRINIC, APNIC, and our own CA) identifies different deployment models of relying parties and (surprisingly) prevalent inconsistent fetching behavior that affects Internet routing robustness. Our results reveal nearly 90% of relying parties are unable to connect to delegated publication points under certain conditions, which leads to erroneous invalidation of IP prefixes and likely widespread loss of network reachability.
Quellsystem:
ReposIt

Interne Metadaten
Quelldatensatz
oai:reposit.haw-hamburg.de:20.500.12738/10762