9 - BGP Security/Wedgies Flashcards
1
Q
Prefix Hijacking
A
Using BGP to announce malicious routes that are more specific than legit ones. Leads to traffic redirection.
2
Q
RPKI
A
Resource Public Key Infrastructure.
3
Q
RPKI: What does it do?
A
Binds AS to IP prefix and allows operator to filter on these.
4
Q
What does BGPSEC do?
In the context of this module
A
Checks the reported ASPath is the actual path and that packets have not secretly gone somewhere else
5
Q
What is a BGP Wedgie in terms of number of operators and level of knowledge?
A
Unintended routing that cannot be debugged by one single group of operators due to lack of knowledge.