AS-CRED: Reputation Service for Trustworthy Inter-Domain Routing
نویسندگان
چکیده
The current design of BGP implicitly assumes the existence of trust between ASes with respect to exchanging valid BGP updates. This assumption of complete trust is problematic given the frequent announcement of invalid — inaccurate or unnecessary — updates. This paper presents AS-CRED, a reputation service for ASes which quantifies the level of trust one can have with respect to its announcing valid updates. To compute the reputation, AS-CRED analyzes the past updates announced by each observable AS in the Internet, over a time-window, based on well-defined properties. It then classifies the resulting observations into multiple types of feedback. The feedback values are input into a mathematical function for computing AS reputation. The reputation is then used to track the instances of invalid updates announced in the Internet and trigger alerts. The contributions of the paper are: (1) a reputation service for ASes, characterizing their trustworthiness; (2) a set of welldefined properties for analyzing AS behavior; (3) a simple reputation function and feedback mechanism; (4) a reputation portal which regularly publishes AS reputation; and (5) a reputation-based alert service which tracks potentially invalid updates in the Internet. Detailed analysis of AS-CRED demonstrates: (a) AS behavior is repetitive making reputation an effective trust metric, and (b) AS-CRED’s alerts for invalid updates show an eight fold improvement over existing alert systems.
منابع مشابه
Survey on Quality Analysis of Cooperation Incentive Strategies in MANET
In mobile ad hoc networks (MANETs), tasks are conducted based on the cooperation of nodes in the networks. However, since the nodes are usually constrained by limited computation resources, selfish nodes may refuse to be cooperative. Reputation system is one of the main solutions to the node non-cooperation problem. A reputation system evaluates node behaviours by reputation values and uses a r...
متن کاملDecoupling Service and Feedback Trust in a Peer-to-Peer Reputation System
Reputation systems help peers decide whom to trust before undertaking a transaction. Conventional approaches to reputation-based trust modeling assume that peers reputed to provide trustworthy service are also likely to provide trustworthy feedback. By basing the credibility of a peer’s feedback on its reputation as a transactor, these models become vulnerable to malicious nodes that provide go...
متن کاملStrengthening Weak Identities Through Inter-Domain Trust Transfer
On most current websites untrustworthy or spammy identities are easily created. Existing proposals to detect untrustworthy identities rely on reputation signals obtained by observing the activities of identities over time within a single site or domain; thus, there is a time lag before which websites cannot easily distinguish attackers and legitimate users. In this paper, we investigate the fea...
متن کاملTrust Aspects in the Architecture of Interoperable Systems
By introducing trust concepts to the enteprise computing arena, a more user-oriented view to trustworthy services becomes available. We can consider a business service to be trustworthy, if it is likely to provide us the right functionality and to deliver it in a manner that is, for example, timely, secure, and privacy-preserving. In order to achieve this goal, a lot of progress has to be made ...
متن کاملCollaboration reputation for trustworthy Web service selection in social networks
Traditional trustworthy service selection approaches focus the overall reputation maximization of all selected services in social networks. However, the selected services barely interact with each other in history, which leads to the trustworthiness among services very low. Hence, to enhance the trustworthiness of Web service selection, a novel concept, collaboration reputation is proposed in t...
متن کامل