A novel path-based approach for single-packet IP traceback

被引:11
|
作者
Lu, Ning [1 ,2 ]
Wang, Yulong [1 ]
Su, Sen [1 ]
Yang, Fangchun [1 ]
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100088, Peoples R China
[2] Northeastern Univ, Sch Comp & Commun Engn, Qinhuangdao, Peoples R China
关键词
Internet security; DoS attacks; single-packet IP traceback; packet logging; logical path; MARKING;
D O I
10.1002/sec.741
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Denial-of-Service attacks continue to plague the Internet. Tracing an individual attack packet to its origin is an important step in defending against these attacks. For this reason, researchers have proposed several approaches for single-packet IP traceback. Packet logging is a generic technique in these methods, which results in the high overhead at routers and low traceback accuracy. In this paper, we propose a novel path-based approach for single-packet IP traceback. Our approach makes use of the routing paths to set up traceback paths, instead of packet logging, so as to improve single-packet IP traceback in several dimensions: (i) our storage overhead is only related to the number of routing paths, no matter how many packets traverse on them; (ii) the number of queried routers during the traceback process is only related to the number of hops in the attack path; (iii) the false positives in attack-path construction can be negligible. We perform extensive mathematical analysis and simulations to evaluate our approach. The results show that our approach represents a step forward in preciseness and efficiency compared with the previous work. Copyright (c) 2013 John Wiley & Sons, Ltd.
引用
收藏
页码:309 / 321
页数:13
相关论文
共 50 条
  • [1] Single-packet IP traceback
    Snoeren, AC
    Partridge, C
    Sanchez, LA
    Jones, CE
    Tchakountio, F
    Schwartz, B
    Kent, ST
    Strayer, WT
    [J]. IEEE-ACM TRANSACTIONS ON NETWORKING, 2002, 10 (06) : 721 - 734
  • [2] A more practical approach for single-packet IP traceback using packet logging and marking
    Gong, Chao
    Sarac, Kamil
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2008, 19 (10) : 1310 - 1324
  • [3] Efficient Single-packet Traceback Approach Based on Alliance Theory
    Lu N.
    Zhang J.-W.
    Ma J.-F.
    Cheng Q.-F.
    Zhang J.-W.
    Wang S.-G.
    [J]. Ruan Jian Xue Bao/Journal of Software, 2020, 31 (12): : 3880 - 3908
  • [4] Hybrid Single-Packet IP Traceback with Low Storage and High Accuracy
    Yang, Ming Hour
    [J]. SCIENTIFIC WORLD JOURNAL, 2014,
  • [5] HPSIPT: A high-precision single-packet IP traceback scheme
    Murugesan, Vijayalakshmi
    Selvaraj, Mercy Shalinie
    Yang, Ming-Hour
    [J]. COMPUTER NETWORKS, 2018, 143 : 275 - 288
  • [6] Implementation of single-packet hybrid IP traceback for IPv4 and IPv6 networks
    Kamaldeep
    Malik, Manisha
    Dutta, Maitreyee
    [J]. IET INFORMATION SECURITY, 2018, 12 (01) : 1 - 6
  • [7] A traceback approach with probabilistic packet marking IP based on cooperations
    [J]. Yan, D. (yandong200@gmail.com), 1600, Beijing University of Posts and Telecommunications (35):
  • [8] A novel packet marking scheme for IP traceback
    Al-Duwairi, B
    Manimaran, G
    [J]. TENTH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS, PROCEEDINGS, 2004, : 195 - 202
  • [9] WHIT: A More Efficient Hybrid Method for Single-Packet IP Traceback Using Walsh Matrix and Router Degree Distribution
    Wang, Yulong
    Ren, Ji
    [J]. IEICE TRANSACTIONS ON COMMUNICATIONS, 2013, E96B (07) : 1896 - 1907
  • [10] TTL based Packet Marking for IP Traceback
    Paruchuri, Vamsi
    Durresi, Arjan
    Chellappan, Sriram
    [J]. GLOBECOM 2008 - 2008 IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE, 2008,