ARTEMIS over ONOS demo
Dimitris Mavrommatis, Vasileios Kotronis, Lefteris Manassakis
#ONOSProject
Agenda
#ONOSProject
Motivation
⇒ Implement and evaluate ARTEMIS over ONOS
[1] https://bgpmon.net/large-hijack-affects-reachability-of-high-traffic-destinations/
[2] http://dyn.com/blog/iran-leaks-censorship-via-bgp-hijacks/
[3] G. Chaviaras et al., “ARTEMIS: Real-Time Detection and Automatic Mitigation for BGP Prefix Hijacking“, Proc. of SIGCOMM (demo), 2016.
#ONOSProject
Open Source Tools
#ONOSProject
BGP Prefix Hijacking
Source: G. Chaviaras, P. Gigis, P. Sermpezis, and X. Dimitropoulos, “ARTEMIS: Real-Time Detection and Automatic Mitigation for BGP Prefix Hijacking (demo)”, in ACM SIGCOMM, 2016
#ONOSProject
Artemis
Source: G. Chaviaras, P. Gigis, P. Sermpezis, and X. Dimitropoulos, “ARTEMIS: Real-Time Detection and Automatic Mitigation for BGP Prefix Hijacking (demo)”, in ACM SIGCOMM, 2016
#ONOSProject
Artemis
Source: G. Chaviaras, P. Gigis, P. Sermpezis, and X. Dimitropoulos, “ARTEMIS: Real-Time Detection and Automatic Mitigation for BGP Prefix Hijacking (demo)”, in ACM SIGCOMM, 2016
#ONOSProject
Artemis Extensions (Future Work)
AS-1
ONOS
AS-2
AS-3
AS-5
ONOS
AS-6
AS-4
AS-7
LEGITIMATE
ANNOUNCER
HIJACKER
MOAS COLLABORATOR
ATTRACT & RELAY TRAFFIC BACK TO LEGITIMATE
HELP ME!
Research opportunities:
#ONOSProject
GNS3 Lab Platform - Advantages
#ONOSProject
Other tools we use with GNS3...
#ONOSProject
GNS3 – Demo Topology
Protected AS (ONOS-Artemis)
Intermediate ASes (Legacy)
Hijacking AS
Quagga router (BGP)
Vbox VM
Legacy L2 switch
End-host (container)
OpenvSwitch
#ONOSProject