Understanding Route Origin Validation (ROV) Deployment in the Real World and Why MANRS Action 1 Is Not Followed

Lancheng Qin

Network and Distributed System Security (NDSS) Symposium 2024 · Day 2 · Network & DNS Security

BGP hijacking remains a persistent and critical threat to the stability and security of the global Internet routing system. In 2021 alone, BGPStream reported a staggering 775 hijacking incidents, some with severe consequences, such as AS 212046 hijacking 3,786 prefixes, impacting 972 Autonomous Systems (ASes) across 42 countries. To counter this pervasive issue, **Route Origin Validation (ROV)** has emerged as the industry's best current practice for enhancing BGP security. The Mutually Agreed Norms for Routing Security (**MANRS**), an initiative championed by the Internet Society, actively promotes the adoption of ROV among network operators. Specifically, MANRS Action 1 mandates that operators validate and filter illegitimate announcements received from their customers.

Watch on YouTube