BGP Anomaly Detection Techniques: A Survey

The border gateway protocol (BGP) is the Internet's default inter-domain routing protocol that manages connectivity among autonomous systems (ASes). Over the past two decades many anomalies of BGP have been identified that threaten its stability and reliability. This survey discusses and classi...

Celý popis

Uložené v:
Podrobná bibliografia
Vydané v:IEEE Communications surveys and tutorials Ročník 19; číslo 1; s. 377 - 396
Hlavní autori: Al-Musawi, Bahaa, Branch, Philip, Armitage, Grenville
Médium: Journal Article
Jazyk:English
Vydavateľské údaje: IEEE 2017
Predmet:
ISSN:2373-745X
On-line prístup:Získať plný text
Tagy: Pridať tag
Žiadne tagy, Buďte prvý, kto otaguje tento záznam!
Abstract The border gateway protocol (BGP) is the Internet's default inter-domain routing protocol that manages connectivity among autonomous systems (ASes). Over the past two decades many anomalies of BGP have been identified that threaten its stability and reliability. This survey discusses and classifies these anomalies and discusses the 20 most significant techniques used to identify them. Our classification is based on the broad category of approach, BGP features used to identify the anomaly, effectiveness in identifying the anomaly and effectiveness in identifying which AS was the location of the event that caused the anomaly. We also discuss a number of key requirements for the next generation of BGP anomaly detection techniques.
AbstractList The border gateway protocol (BGP) is the Internet's default inter-domain routing protocol that manages connectivity among autonomous systems (ASes). Over the past two decades many anomalies of BGP have been identified that threaten its stability and reliability. This survey discusses and classifies these anomalies and discusses the 20 most significant techniques used to identify them. Our classification is based on the broad category of approach, BGP features used to identify the anomaly, effectiveness in identifying the anomaly and effectiveness in identifying which AS was the location of the event that caused the anomaly. We also discuss a number of key requirements for the next generation of BGP anomaly detection techniques.
Author Branch, Philip
Armitage, Grenville
Al-Musawi, Bahaa
Author_xml – sequence: 1
  givenname: Bahaa
  surname: Al-Musawi
  fullname: Al-Musawi, Bahaa
  email: balmusawi@swin.edu.au
  organization: Fac. of Eng., Univ. of Kufa, Kufa, Iraq
– sequence: 2
  givenname: Philip
  surname: Branch
  fullname: Branch, Philip
  email: pbranch@swin.edu.au
  organization: Centre for Adv. Internet Archit., Swinburne Univ. of Technol., Melbourne, VIC, Australia
– sequence: 3
  givenname: Grenville
  surname: Armitage
  fullname: Armitage, Grenville
  email: garmitage@swin.edu.au
  organization: Centre for Adv. Internet Archit., Swinburne Univ. of Technol., Melbourne, VIC, Australia
BookMark eNotzMtKw0AUANBBFGyrP6CbWQtJ79x5ddzFVFuhUqER3JVJ5gYj7USTVMjfu9DV2Z0pO49tJMZuBKRCgJvn25ddkSIIk6JBRAVnbILSysQq_X7Jpn3_CaBQOZiwu4fVK89ie_SHkS9poGpo2sgLqj5i832i_p5nfHfqfmi8Yhe1P_R0_e-MvT09Fvk62WxXz3m2SSp0ekhEabSztSCqqQxl6YLwGFCT8rYyzqAAK8GphQy1V4YsVMEbMAoWRiil5Yzd_r0NEe2_uubou3FvLUoHKH8Bpgc_qw
CitedBy_id crossref_primary_10_3390_info9050125
crossref_primary_10_1016_j_comnet_2022_109129
crossref_primary_10_1109_TNSM_2020_3037019
crossref_primary_10_1109_TCAD_2017_2775240
crossref_primary_10_1007_s10207_020_00502_x
crossref_primary_10_1109_TIFS_2018_2799425
crossref_primary_10_1109_MCOM_001_2200215
crossref_primary_10_1109_MCOM_004_2300244
crossref_primary_10_1016_j_comnet_2018_04_015
crossref_primary_10_1007_s12243_024_01045_1
crossref_primary_10_1109_MNET_2018_1800151
crossref_primary_10_1109_TNET_2017_2748902
crossref_primary_10_1088_1742_6596_1176_3_032015
crossref_primary_10_1109_TNET_2019_2911330
crossref_primary_10_23939_ictee2025_01_034
crossref_primary_10_1016_j_csi_2023_103779
crossref_primary_10_3390_fi16050146
crossref_primary_10_1109_TVCG_2022_3209412
crossref_primary_10_1109_MCOM_001_2100479
crossref_primary_10_1109_TNSM_2024_3468907
crossref_primary_10_3390_computers11120186
crossref_primary_10_1016_j_physa_2020_124142
crossref_primary_10_1016_j_comcom_2018_04_013
crossref_primary_10_1016_j_comnet_2019_06_017
crossref_primary_10_1016_j_comnet_2024_110926
crossref_primary_10_3390_s24196414
crossref_primary_10_1007_s11042_023_17135_6
crossref_primary_10_1007_s12650_024_01042_5
crossref_primary_10_1109_TBDATA_2024_3481899
crossref_primary_10_1109_JIOT_2023_3293500
crossref_primary_10_1155_2022_1258482
crossref_primary_10_1016_j_comnet_2023_109778
crossref_primary_10_1016_j_comnet_2021_107835
crossref_primary_10_1007_s11235_019_00606_3
crossref_primary_10_1109_MCOM_001_2000602
crossref_primary_10_1109_TCAD_2018_2846641
crossref_primary_10_1109_ACCESS_2019_2916648
crossref_primary_10_1016_j_comnet_2023_109596
crossref_primary_10_1109_JSAC_2021_3078497
crossref_primary_10_1016_j_comnet_2022_109474
crossref_primary_10_1016_j_comnet_2024_110257
crossref_primary_10_3390_sym10090408
crossref_primary_10_1016_j_comnet_2025_111588
crossref_primary_10_1109_ACCESS_2019_2927712
crossref_primary_10_1016_j_comnet_2019_107031
ContentType Journal Article
DBID 97E
RIA
RIE
DOI 10.1109/COMST.2016.2622240
DatabaseName IEEE All-Society Periodicals Package (ASPP) 2005–Present
IEEE All-Society Periodicals Package (ASPP) 1998–Present
IEEE Xplore
DatabaseTitleList
Database_xml – sequence: 1
  dbid: RIE
  name: IEEE Electronic Library (IEL)
  url: https://ieeexplore.ieee.org/
  sourceTypes: Publisher
DeliveryMethod fulltext_linktorsrc
Discipline Engineering
EISSN 2373-745X
EndPage 396
ExternalDocumentID 7723902
Genre orig-research
GroupedDBID 0R~
29I
2WC
4.4
5GY
5VS
6IK
97E
AAJGR
AARMG
AASAJ
AAWTH
ABAZT
ABQJQ
ABVLG
ACGFO
ACIWK
AENEX
AETIX
AGQYO
AGSQL
AHBIQ
AIBXA
AKJIK
AKQYR
ALLEH
ALMA_UNASSIGNED_HOLDINGS
ATWAV
AZLTO
BEFXN
BFFAM
BGNUA
BKEBE
BPEOZ
CS3
EBS
EJD
HZ~
IES
IFIPE
IFJZH
IPLJI
JAVBF
LAI
O9-
OCL
P2P
RIA
RIE
RNS
ID FETCH-LOGICAL-c295t-1b6597f1eefebdbb9d1a2d25e4a7c6962107309483dfa46e70cda606408614453
IEDL.DBID RIE
ISICitedReferencesCount 96
ISICitedReferencesURI http://www.webofscience.com/api/gateway?GWVersion=2&SrcApp=Summon&SrcAuth=ProQuest&DestLinkType=CitingArticles&DestApp=WOS_CPL&KeyUT=000395896100014&url=https%3A%2F%2Fcvtisr.summon.serialssolutions.com%2F%23%21%2Fsearch%3Fho%3Df%26include.ft.matches%3Dt%26l%3Dnull%26q%3D
IngestDate Wed Aug 27 02:48:58 EDT 2025
IsPeerReviewed true
IsScholarly true
Issue 1
Language English
LinkModel DirectLink
MergedId FETCHMERGED-LOGICAL-c295t-1b6597f1eefebdbb9d1a2d25e4a7c6962107309483dfa46e70cda606408614453
PageCount 20
ParticipantIDs ieee_primary_7723902
PublicationCentury 2000
PublicationDate 2017-Firstquarter
PublicationDateYYYYMMDD 2017-01-01
PublicationDate_xml – year: 2017
  text: 2017-Firstquarter
PublicationDecade 2010
PublicationTitle IEEE Communications surveys and tutorials
PublicationTitleAbbrev COMST
PublicationYear 2017
Publisher IEEE
Publisher_xml – name: IEEE
SSID ssj0042490
Score 2.5232728
SecondaryResourceType review_article
Snippet The border gateway protocol (BGP) is the Internet's default inter-domain routing protocol that manages connectivity among autonomous systems (ASes). Over the...
SourceID ieee
SourceType Publisher
StartPage 377
SubjectTerms anomaly detection
BGP
BGP anomaly
BGP stability
inter-domain routing
Internet
Internet security
IP networks
Logic gates
Routing
Routing protocols
Tutorials
Title BGP Anomaly Detection Techniques: A Survey
URI https://ieeexplore.ieee.org/document/7723902
Volume 19
WOSCitedRecordID wos000395896100014&url=https%3A%2F%2Fcvtisr.summon.serialssolutions.com%2F%23%21%2Fsearch%3Fho%3Df%26include.ft.matches%3Dt%26l%3Dnull%26q%3D
hasFullText 1
inHoldings 1
isFullTextHit
isPrint
link http://cvtisr.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwlV1LTwIxEJ4g8aAHX2h8Zw-ejAu7pdtuvSGKXkQSMOFG-pgmJroYWEj497YFjCZevDVzaSaTeXzzBLhSVGmeiTzWVOqYapvESjezOMuJJcpaK4kMxyZ4t5sPh6JXgZvvWRhEDM1nWPfPUMs3Yz3zqbKGiwQdRHcGd4NzvpzVWltd6mBEsh6KSUSj_fLcH_jOLVYnjHi_9et8SvAend3__bsHO6soMWotxboPFSwOYPvH7sAaXN899iIH3j_k-yK6xzK0VBXRYL2TdXobtaL-bDLHxSG8dh4G7ad4dfgg1kRkZZwq5uJ8myJaVEYpYVJJDMmQSq6ZYA6mOcUUNG8aKylDnmgjma_J5R7fZc0jqBbjAo8hckpgkNo8lYJSTkyuubSZk5BUNkmQn0DN8zv6XO62GK1YPf2bfAZbxLu1kII4h2o5meEFbOp5-TadXAaBfAFRIovI
linkProvider IEEE
linkToHtml http://cvtisr.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwlV3NSwJBFH-IBdWhL4u-20OnaHV3nNnd6WaWGakJGniT-XgDQa2hq-B_38yqUdCl2_Auw-PxPn7vE-BKUqlixhNfUaF8qkzgS1VlPkuIIdIYI4jIj03EnU4yGPBuAW6-Z2EQMW8-w7J75rV8PVJTlyqr2EjQQnRrcNcYpSRcTGut7C61QCJYjcUEvFJ_aff6rncrKpOIOM_164BK7j8aO__7eRe2l3GiV1sIdg8KmO7D1o_tgSW4vnvseha-f4j3uXePWd5UlXr91VbWya1X83rT8QznB_DaeOjXm_7y9IGvCGeZH8rIRvomRDQotZRch4JowpCKWEU8skDNqianSVUbQSOMA6VF5KpyiUN4rHoIxXSU4hF4Vg00UpOEglMaE52oWBhmZSSkCQKMj6Hk-B1-LrZbDJesnvxNvoSNZr_dGraeOs-nsEmck8sTEmdQzMZTPId1NcveJuOLXDhfzLaPDw
openUrl ctx_ver=Z39.88-2004&ctx_enc=info%3Aofi%2Fenc%3AUTF-8&rfr_id=info%3Asid%2Fsummon.serialssolutions.com&rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&rft.genre=article&rft.atitle=BGP+Anomaly+Detection+Techniques%3A+A+Survey&rft.jtitle=IEEE+Communications+surveys+and+tutorials&rft.au=Al-Musawi%2C+Bahaa&rft.au=Branch%2C+Philip&rft.au=Armitage%2C+Grenville&rft.date=2017-01-01&rft.pub=IEEE&rft.eissn=2373-745X&rft.volume=19&rft.issue=1&rft.spage=377&rft.epage=396&rft_id=info:doi/10.1109%2FCOMST.2016.2622240&rft.externalDocID=7723902