BGP mitigation
The following methods can be used to prevent BGP hijacking:
- BGP hijacking detection – Proper monitoring of the BGP-routed traffic can help organizations to avoid BGP hijacking. This can be achieved if there is any latency being seen in the network traffic from the normal latency Time To Live (TTL).
- IP prefix filtering – The network administrators or ISPs should only declare the fixed IP addresses rather than the complete internet. This will prevent the routers to accept the fake IP address prefix declarations and also help in preventing unintentional route hijacking.
- BGPSec – Implement BGPSec, which will implement another layer of security at the BGP protocol.