Packet track and traceback mechanism against denial of service attacks Packet track and traceback mechanism against denial of service attacks

Packet track and traceback mechanism against denial of service attacks

  • 期刊名字:中国邮电高校学报(英文版)
  • 文件大小:
  • 论文作者:LI Li,SHEN Su-bin
  • 作者单位:Institute of Information Network Technology
  • 更新时间:2023-02-27
  • 下载次数:
论文简介

The denial of service attack is a main type of threat on the Internet today. On the basis of path identification (Pi) and Internet control message protocol (ICMP) traceback (iTrace) methods, a packet track and traceback mechanism is proposed, which features rapid response and high accuracy. In this scheme, routers apply packet marking scheme and send traceback messages, which enables the victim to design the path tree in peace time. During attack times the victim can trace attackers back within the path tree and perform rapid packet filtering using the marking in each packet. Traceback messages overcome Pi's limitation, wherein too much path information is lost in path identifiers; whereas path identifiers can be used to expedite the design of the path-tree, which reduces the high overhead in iTrace. Therefore, our scheme not only synthesizes the advantages but also compromises the disadvantages of the above two methods. Simulation results with NS-2 show the validity of our scheme.

论文截图
版权:如无特殊注明,文章转载自网络,侵权请联系cnmhg168#163.com删除!文件均为网友上传,仅供研究和学习使用,务必24小时内删除。