NIST Releases Draft on BGP Security

Paper describes a technique to protect the Internet from Border Gateway Protocol route hijacking attacks.

Dark Reading Staff, Dark Reading

September 6, 2018

1 Min Read
Dark Reading logo in a gray background | Dark Reading

A new draft publication from the NIST National Cybersecurity Center of Excellence (NCCoE) takes aim at security concerns about the Border Gateway Protocol (BGP), the default routing protocol to route traffic among Internet domains. The paper, "Protecting the Integrity of Internet Routing: Border Gateway Protocol (BGP) Route Origin Validation," is open for public comment until Oct. 15.

Draft SP 1800-14 was developed in cooperation with AT&T, CenturyLink, Cisco, Comcast, Juniper, Palo Alto Networks, and The George Washington University. It describes Route Origin Validation (ROV), a technique intended to shield BGP routers and the routes they advertise from an attack known as route hijacking, in which the bad guys advertise a malicious route, sending traffic to illegitimate servers, routers, or both.

Rather than describing new technology, the paper describes " ... how networks can protect BGP routes from vulnerability to route hijacks by using available security protocols, products, and tools to perform BGP ROV to reduce route hijacking threats," according to NIST.

Read here and here for more details.

BHEURUOPE2018-vplug_Web_Banners_468x60_Sponsor.png

 

Black Hat Europe returns to London Dec 3-6 2018  with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier security solutions and service providers in the Business Hall. Click for information on the conference and to register.

About the Author

Dark Reading Staff

Dark Reading

Dark Reading is a leading cybersecurity media site.

Keep up with the latest cybersecurity threats, newly discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

You May Also Like


More Insights