The invention discloses a self-representation secure routing
authorization method based on an identity, namely, a public key. The method comprises the following steps: S1, publishing a
public security parameter, and starting a trusted root; S2, constructing a self-trusted address
system; S3, constructing a self-trusted routing identity
system; S4, signing and issuing an address
authorization certificate to an NASA (Network Autonomous
System Authority) by an address owner, and assigning a deployed routing announcer to announce address reachable information by the NASA; S5, signing and issuing a path
authentication certificate by the routing announcer, and announcing routing update carrying the path
authentication certificate and the address
authorization certificate to a peer
route; and S6, receiving the routing update by a peer routing announcer, verifying the address
authorization certificate and the path
authentication certificate issued and signed by each announcer on a routing path, and determining the validity of the routing update. The self-representation secure routing authorization method is simple in principle and easy for deployment;
source authentication and path authentication of inter-domain routing can be realized; and the problem of inevitable prefix hijacking in a conventional inter-domain routing mechanism can be solved effectively.