Title
Provable security of S-BGP and other path vector protocols: model, analysis and extensions
Abstract
This paper provides the provable-security treatment of path vector routing protocols. We first design a security definition for routing path vector protocols by studying, generalizing, and formalizing numerous known threats. Our model incorporates three major security goals. It is quite strong, yet simple to use. We prove by reduction that S-BGP satisfies two out of the security model's three goals, assuming the underlying signature scheme is secure. Under the same assumption, we next show how the protocol can be modified to meet all three security goals simultaneously. Finally, we study security of partial PKI deployment of path vector protocols when not all nodes have public keys. We investigate the possibilities of relaxing the PKI requirement and relying on the non-cryptographic physical security of the protocol in order to achieve possibly weaker, but still well-defined, notions of security. We also present the necessary and sufficient conditions to achieve full security in the partial PKI deployment scenario. We believe our conclusions will prove useful for protocol developers, standards bodies and government agencies.
Year
DOI
Venue
2012
10.1145/2382196.2382254
IACR Cryptology ePrint Archive
Keywords
DocType
Volume
pki requirement,path vector protocol,provable security,partial pki deployment scenario,security definition,non-cryptographic physical security,partial pki deployment,security model,security goal,major security goal,full security
Conference
2013
Citations 
PageRank 
References 
12
0.65
32
Authors
2
Name
Order
Citations
PageRank
Alexandra Boldyreva12297114.80
Robert Lychev2614.29