TY - GEN
T1 - OSV
T2 - 14th International Joint Conference on Computer Science and Software Engineering, JCSSE 2017
AU - Kasemsuwan, Poonyavee
AU - Visoottiviseth, Vasaka
N1 - Publisher Copyright:
© 2017 IEEE.
PY - 2017/9/5
Y1 - 2017/9/5
N2 - OSPF is one of a widely deployed intra-domain routing protocol in enterprise network operation around the world. As the protocol itself was introduced about two decades ago, it contains many known attacks which some of them can be patched by a newer version of the router firmware. Nevertheless, a reckless or a poor practice of network operator could jeopardize the system by forgetting to enable the OSPF authentication or use a password that can be easily guessed. Moreover, a lot of routers that still in operating out there are running with the out-of-date firmware, which surely contains security holes. Attacks on routing protocol could lead to severe damage to the network. In this paper, we introduce OSV as a tool to detect the OSPF network vulnerability by checking password strength and performing ten penetration testing against the target OSPF network. OSV also generates a report to inform any vulnerability found to help the network operator detect their security issues. We confirm the validation and the performance of OSV tool by testing it with Quagga and Cisco routers.
AB - OSPF is one of a widely deployed intra-domain routing protocol in enterprise network operation around the world. As the protocol itself was introduced about two decades ago, it contains many known attacks which some of them can be patched by a newer version of the router firmware. Nevertheless, a reckless or a poor practice of network operator could jeopardize the system by forgetting to enable the OSPF authentication or use a password that can be easily guessed. Moreover, a lot of routers that still in operating out there are running with the out-of-date firmware, which surely contains security holes. Attacks on routing protocol could lead to severe damage to the network. In this paper, we introduce OSV as a tool to detect the OSPF network vulnerability by checking password strength and performing ten penetration testing against the target OSPF network. OSV also generates a report to inform any vulnerability found to help the network operator detect their security issues. We confirm the validation and the performance of OSV tool by testing it with Quagga and Cisco routers.
KW - Network Security
KW - OSPF
KW - Penetration Testing Tool
KW - Routing Protocol
KW - Vulnerability
UR - https://www.scopus.com/pages/publications/85031734762
U2 - 10.1109/JCSSE.2017.8025919
DO - 10.1109/JCSSE.2017.8025919
M3 - Conference contribution
AN - SCOPUS:85031734762
T3 - Proceedings of the 2017 14th International Joint Conference on Computer Science and Software Engineering, JCSSE 2017
BT - Proceedings of the 2017 14th International Joint Conference on Computer Science and Software Engineering, JCSSE 2017
A2 - Chantamunee, Siripinyo
A2 - Doung-in, Suthanya
A2 - Thanathamathee, Putthiporn
PB - Institute of Electrical and Electronics Engineers Inc.
Y2 - 12 July 2017 through 14 July 2017
ER -