[论文解读] Isolario: a Do-ut-des Approach to Improve the Appeal of BGP Route Collecting
Isolario 通过一种‘给予以换取’(do-ut-des)的模式,提出了一种增强 BGP 路由收集的方法:作为交换,向网络管理员提供实时和历史路由分析服务,以换取其共享 BGP 路由表。通过提供诸如路由振荡检测和前缀劫持警报等可操作洞察,Isolario 提高了小型自治系统(ASes)的参与度,从而提升了公开可用 BGP 数据的完整性和多样性,为互联网研究提供了支持。
The incompleteness of data collected from BGP route collecting projects is a well-known issue which potentially affects every research activity carried out on the analysis of the Internet inter-domain routing. Recent works explained that one of the possible solutions is to increase the number of ASes feeding these projects from the Internet periphery, in order to reveal the hidden portion of peering connectivity of their upstream providers. The main problem is that these projects are currently not appealing enough for the network administrators of these ASes, which are typically not aware of their existence or not interested enough to share their data. Our contribution is Isolario, a project based on the do-ut-des principle which aims at persuading network administrators to share their routing information by offering services in return, ranging from real-time analyses of the incoming BGP session(s) to historic analyses of routing reachability. To the best of our knowledge, Isolario is the only route collecting project publicly available which offers a set of services to its users to encourage their participation, aiming at increasing the amount of BGP data publicly available for research purposes.
研究动机与目标
- 解决传统收集器(如 Route Views 和 RIS)所收集的 BGP 数据不完整且存在偏差的问题,这些收集器主要从大型 ISP 获取数据。
- 克服由于缺乏感知收益而导致的小型网络管理员在路由收集项目中参与度低的问题。
- 通过提供增值服务激励参与,提升全球 BGP 数据的完整性。
- 设计一个可扩展、以用户为中心的系统,支持参与的网络管理员进行实时和历史 BGP 数据分析。
- 通过将数据源数量从主要 ISP 扩展到更多来源,使研究人员能够访问更具代表性和多样性的 BGP 数据。
提出的方法
- 实现一个 BGP 路由收集引擎,通过与参与的自治系统(即数据提供者,feeders)建立 BGP 会话来捕获完整的路由表。
- 设计一个高性能归档系统,用于存储和快速检索 MRT 格式的 BGP 数据,以支持历史分析。
- 构建一整套实时和历史服务(如路由振荡检测和前缀劫持监控),并通过 Web 界面提供访问。
- 集成警报机制,当检测到可疑的 BGP 事件(如劫持、振荡)时,通过电子邮件或 HTTP/HTTPS 发送通知。
- 允许用户基于基于流或子网的规则配置自定义过滤器,以监控特定的路由行为。
- 应用 do-ut-des 原则:数据提供者(feeders)在共享其 BGP 数据的同时,可获得有价值的网络监控服务。
实验结果
研究问题
- RQ1BGP 路由收集项目如何提高当前在数据收集中代表性不足的小型 AS 的参与度?
- RQ2提供增值服务在多大程度上能提升公开可用 BGP 数据的完整性和多样性?
- RQ3实时和历史 BGP 分析服务是否能有效激励网络管理员共享其路由表?
- RQ4何种架构设计能够实现低延迟的路由数据访问,并高效支持实时和历史服务的数据存储?
- RQ5自动化警报系统在检测关键路由异常(如前缀劫持或路由振荡)方面的有效性如何?
主要发现
- Isolario 是首个公开可用的 BGP 路由收集项目,通过 do-ut-des 原则提供一整套增值服务,以激励参与。
- 该系统能够实现实时检测异常路由事件(如路由振荡和前缀劫持),并通过电子邮件或 HTTP/HTTPS 发送警报。
- 路由收集引擎支持快速 RIB 转储,确保实时服务能够低延迟地访问当前路由状态。
- 归档系统通过最小化对大型 MRT 文件的重复读取,优化了数据检索,提升了历史分析的性能。
- 前缀劫持检测器(PHD)可识别三类劫持事件:错误起源、被覆盖和覆盖型劫持,并向受影响的自治系统发送警报。
- Isolario 目前正在运行,并接受新的数据提供者,其 Isolario AS(AS 2598)提供免费试用,证明了其可行性与早期采用。
更好的研究,从现在开始
从阅读论文到最终审阅,大幅缩短您的研究时间。
无需绑定信用卡
本解读由 AI 生成,并经人工编辑审核。