Illuminating Router Vendor Diversity Within Providers and Along Network Paths
Taha Albakour, Oliver Gasser, Robert Beverly, Georgios Smaragdakis

TL;DR
This paper introduces LFP, a new tool for accurately identifying router vendors across the Internet, enabling better understanding of vendor diversity, regional distribution, and implications for security and routing policies.
Contribution
The paper presents LFP, an improved router fingerprinting method that enhances coverage, accuracy, and efficiency over existing techniques, and applies it to analyze vendor heterogeneity and policy implications.
Findings
LFP achieves higher accuracy and coverage in router vendor identification.
Significant regional variation in vendor distribution was observed.
Potential for vendor-based routing policies to mitigate security risks was demonstrated.
Abstract
The Internet architecture has facilitated a multi-party, distributed, and heterogeneous physical infrastructure where routers from different vendors connect and inter-operate via IP. Such vendor heterogeneity can have important security and policy implications. For example, a security vulnerability may be specific to a particular vendor and implementation, and thus will have a disproportionate impact on particular networks and paths if exploited. From a policy perspective, governments are now explicitly banning particular vendors, or have threatened to do so. Despite these critical issues, the composition of router vendors across the Internet remains largely opaque. Remotely identifying router vendors is challenging due to their strict security posture, indistinguishability due to code sharing across vendors, and noise due to vendor mergers. We make progress in overcoming these…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsInternet Traffic Analysis and Secure E-voting · Network Traffic and Congestion Control · Software-Defined Networks and 5G
