...
首页> 外文期刊>Journal of information science and engineering >A Precise and Practical IP Traceback Technique Based on Packet Marking and Logging
【24h】

A Precise and Practical IP Traceback Technique Based on Packet Marking and Logging

机译:基于数据包标记和记录的精确实用的IP追溯技术

获取原文
获取原文并翻译 | 示例

摘要

Tracing malicious packets back to their source is important to defend the Internet against Denial of Service (DoS) intrusion. IP traceback is just the technique to realize the goal, it reconstructs IP packets traversed path in the Internet to determine their origins. There are two major kinds of IP traceback techniques, which have been proposed as packet marking and packet logging. In packet marking, it incurs little overhead, but requires a large number of packets to get the complete path. In packet logging, it requires plenty of storage space to record packet digests information, but has the capability to trace even a single packet. Therefore, it is a new idea to draw on both advantages to get the intrusion source. HIT (Hybrid IP Traceback) is a representative hybrid IP traceback approach, but it has some vulnerabilities. It may return incorrect path in the traceback process, and its storage overhead remains high. In this paper, we propose a precise IP traceback approach with low storage overhead, which improves accuracy and practicality greatly. In the end, the feasibility and effectiveness are evaluated by mathematical analysis and simulations.
机译:将恶意数据包追溯到其来源对于保护Internet免受拒绝服务(DoS)入侵很重要。 IP追溯只是实现目标的一种技术,它可以重建IP数据包在Internet上经过的路径,以确定其来源。 IP追溯技术主要有两种,它们已被提出作为分组标记和分组记录。在数据包标记中,它的开销很小,但是需要大量的数据包才能获得完整的路径。在数据包日志记录中,它需要足够的存储空间来记录数据包摘要信息,但具有跟踪单个数据包的能力。因此,利用两者的优势来获得入侵源是一个新的想法。 HIT(混合IP回溯)是一种代表性的混合IP回溯方法,但是它具有一些漏洞。它可能在回溯过程中返回错误的路径,并且其存储开销仍然很高。在本文中,我们提出了一种精确的IP回溯方法,该方法具有较低的存储开销,可大大提高准确性和实用性。最后,通过数学分析和仿真评估了可行性和有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号