2nd International ICST Workshop on the Value of Security through Collaboration

Research Article

S-DV: A new approach to Secure Distance Vector routing protocols

  • @INPROCEEDINGS{10.1109/SECCOMW.2006.359578,
        author={Abdelaziz  Babakhouya and Yacine Challal and Abdelmadjid  Bouabdallah and Sa\~{n}d  Gharout},
        title={S-DV: A new approach to Secure Distance Vector routing protocols},
        proceedings={2nd International ICST Workshop on the Value of Security through Collaboration},
        publisher={IEEE},
        proceedings_a={SECOVAL},
        year={2007},
        month={5},
        keywords={Security Routing protocols Authentication Consistency Check.},
        doi={10.1109/SECCOMW.2006.359578}
    }
    
  • Abdelaziz Babakhouya
    Yacine Challal
    Abdelmadjid Bouabdallah
    Saïd Gharout
    Year: 2007
    S-DV: A new approach to Secure Distance Vector routing protocols
    SECOVAL
    IEEE
    DOI: 10.1109/SECCOMW.2006.359578
Abdelaziz Babakhouya1,*, Yacine Challal2,*, Abdelmadjid Bouabdallah2,*, Saïd Gharout3,*
  • 1: Department of Computer Science. University of Béjaïa, Algeria, CERIST: Center of Research Algiers, Algeria
  • 2: Heudiasyc lab. UMR CNRS, UTC, Compiègne. France
  • 3: Department of Computer Science. University of Béjaïa, Algeria
*Contact email: babakhouya@mail.cerist.dz, ychallal@hds.utc.fr, bouabdal@hds.utc.fr, gharout@gmail.com

Abstract

The distance vector (DV) routing protocols (e.g., RIP) have been widely used in the Internet. These protocols are vulnerable to a variety of attacks since they were designed without security aware. In this paper, we propose a new approach called S-DV to secure distance vector routing protocols. The main idea is to designate some trusted routers, which we called S-DV routers, which collaborate in consistency checking of routing update messages. These routers maintain also a security metric which is used to forward data traffic through a secure route. Our threats analysis and comparison show that S-DV offers a deterministic detection of malicious routing updates with reduced overhead compared to S-RIP