首页> 外文OA文献 >A defense system against DDoS attacks by large-scale IP traceback
【2h】

A defense system against DDoS attacks by large-scale IP traceback

机译:大规模IP回溯防御DDoS攻击的防御系统

摘要

In this paper, we present a new approach, called Flexible Deterministic Packet Marking (FDPM), to perform a large-scale IP traceback to defend against Distributed Denial of Service (DDoS) attacks. In a DDoS attack the victim host or network is usually attacked by a large number of spoofed IP packets coming from multiple sources. IP traceback is the ability to trace the IP packets to their sources without relying on the source address field of the IP header. FDPM provides many flexible features to trace the IP packets and can obtain better tracing capability than current IP traceback mechanisms, such as Probabilistic Packet Marking (PPM), and Deterministic Packet Marking (DPM). The flexibilities of FDPM are in two ways, one is that it can adjust the length of marking field according to the network protocols deployed; the other is that it can adjust the marking rate according to the load of participating routers. The implementation and evaluation demonstrates that the FDPM needs moderately only a small number of packets to complete the traceback process; and can successfully perform a large-scale IP traceback, for example, trace up to 110,000 sources in a single incident response. It has a built-in overload prevention mechanism, therefore this scheme can perform a good traceback process even it is heavily loaded.
机译:在本文中,我们提出了一种称为灵活确定性数据包标记(FDPM)的新方法,以执行大规模IP回溯,以防御分布式拒绝服务(DDoS)攻击。在DDoS攻击中,受害主机或网络通常受到来自多个来源的大量欺骗性IP数据包的攻击。 IP追溯是一种无需依赖IP标头的源地址字段即可将IP数据包跟踪到其源的功能。 FDPM提供了许多灵活的功能来跟踪IP数据包,并且与当前的IP跟踪机制(例如,概率数据包标记(PPM)和确定性数据包标记(DPM))相比,可以获得更好的跟踪功能。 FDPM的灵活性有两种,一种是可以根据部署的网络协议调整标记字段的长度。二是可以根据参与路由器的负载来调整打标率。实施和评估表明,FDPM仅需要少量的数据包即可完成追溯过程。并可以成功执行大规模IP跟踪,例如,在单个事件响应中跟踪多达110,000个源。它具有内置的过载预防机制,因此即使负载很重,此方案也可以执行良好的回溯过程。

著录项

  • 作者

    Xiang, Yang; Zhou, Wanlei;

  • 作者单位
  • 年度 2005
  • 总页数
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 入库时间 2022-08-20 20:12:17

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号