Resource Public Key Infrastructure Extension
Abstract
The DHS SPRI Program (Secure Protocols for the Routing Infrastructure) is aimed at improving the security of the Internet s routing infrastructure. It currently involves the design and deployment of the Resource Public Key Infrastructure (RPKI) and the development of a security solution for Border Gateway Protocol (BGP). Under this and previous contracts, BBN has been participating in this effort in two areas. First, BBN has been developing production quality relying party (RP) software for the RPKI. This software enables the user to validate the authorization of an Autonomous System to originate a BGP route for a specified address prefix. Second, BBN has been playing a key role on the team that is designing a comprehensive BGP security capability (BGPSEC) that will attest not only to the identity and authorization of the originator of a BGP route, but also to the validity of the entire path expressed in a BGP UPDATE message. They have authored the specification of the BGPSEC protocol, a threat model for BGPSEC and a router certificate profile.
Document Details
- Document Type
- Technical Report
- Publication Date
- Jan 01, 2012
- Accession Number
- ADA555041
Entities
People
- Karen Seo
Organizations
- RTX