Re: [fw-wiz] Duplicate Public IP Addresses?





Paul D. Robertson wrote:

I think there's been a fair amount of work on detecting bogus BGP routing information since I had to deal with peering routers- and there don't seem to be enough incidents to make everyone want to solve anything, like getting the IRR to a near complete status.

There's actually quite a bit of research focused on detecting bogus BGP routing, to deter DDOS attacks for example, see

Mitigating IP Spoofing by Validating BGP Routes Updates http://paper.ijcsns.org/07_book/200905/20090510.pdf

and for preventing BGP prefix hijacking see www.ece.purdue.edu/~ychu/publications/conext07_hjk.pdf

FWIW, I found several dozen articles (many from refereed journals) by simply searching "detecting bogus BGP routing" from Paul's message.

begin:vcard
fn:David Piscitello
n:Piscitello;David
adr;dom:;;3 Myrtle Bank Lane;Hilton Head;SC;29926
email;internet:dave@xxxxxxxxxxx
x-mozilla-html:FALSE
url:http://hhi.corecom.com/weblogindex.htm
version:2.1
end:vcard

_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards