| Journal of Networks | |
| A Lightweight Scheme for Protecting AS-PATH Attributes of Update Messages | |
| 关键词: update messages; bandwidth; aggregate signature; AS-PATH; | |
| Others : 964845 DOI : 10.4304/jnw.9.7.1707-1713 |
|
PDF
|
|
【 摘 要 】
In existing schemes for protecting AS-PATH attributes of update messages, the security of S-BGP and BGPSEC has received wide acceptance. Yet, in S-BGP or BGPSEC, the number of signatures in a route attestation is linear in the length of AS-PATH, which is one of major hurdles of deploying in the real world and thus is an important and urgent problem. Existing schemes for solving this problem reduce the number of signatures by using aggregate signatures. Yet, its computation overhead of verifying ASPATH is too heavy. In this paper, we present a scheme for reducing the number of signatures by using aggregate signatures, whose computation overhead of verifying ASPATH can be significantly lowered. The presented scheme combines aggregate signature and Rabin signature. By it, the number of signatures in a route attestation is only one because aggregate signature is used. Moreover, differing from the existing aggregate-signature based schemes, the computation overhead of verifying AS-PATH is roughly only one multiplication each hop because Rabin signature is used. Computation overhead of verifying in presented scheme is roughly 1/2400 of that of existing scheme.
【 授权许可】
@ 2006-2014 by ACADEMY PUBLISHER – All rights reserved.
【 预 览 】
| Files | Size | Format | View |
|---|---|---|---|
| 20140821190014135.pdf | 1088KB |
PDF