Branch label based probabilistic packet marking for counteracting DDoS attacks

被引:0
|
作者
Ogawa, T [1 ]
Nakamura, F
Wakahara, Y
机构
[1] Hewlett Packard Japan Ltd, Tokyo 1688585, Japan
[2] Univ Tokyo, Grad Sch Frontier Sci, Tokyo 1130033, Japan
关键词
branch label; route label; probabilistic packet marking; IP traceback; IP spoofing; DDoS attacks;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Effective counteraction to Distributed Denial-of-Services (DDoS) attacks is a pressing problem over the Internet. For this counteraction, it is considered important to locate the router interfaces closest to the attackers in order to effectively filter a great number of identification jammed packets with spoofed source addresses from widely distributed area. Edge sample (ES) based Probabilistic Packet Marking (PPM) is an encouraging method to cope with source IP spoofing, which usually accompanies DDoS attacks. But its fragmentation of path information leads to inefficiency in terms of necessary number of packets, path calculation time and identification accuracy. We propose Branch Label (BL) based PPM to solve the above inefficiency problem. In BL, a whole single path information is marked in a packet without fragmentation in contrast to ES based PPM. The whole path information in packets by the BL approach is expressed with branch information of each router interfaces. This brings the following three key advantages in the process of detecting the interfaces: quick increase in true-positives detected (efficiency), quick decrease in false-negatives detected (accuracy) and fast convergence (quickness).
引用
收藏
页码:1900 / 1909
页数:10
相关论文
共 50 条
  • [31] Research of Improved Probabilistic Packet Marking Algorithms
    Wang, Yan
    Ping, Lingdi
    PROCEEDINGS OF ANNUAL CONFERENCE OF CHINA INSTITUTE OF COMMUNICATIONS, 2010, : 535 - +
  • [32] Investigating Unique Flow Marking for Tracing Back DDoS Attacks
    Aghaei-Foroushani, Vahid
    Zincir-Heywood, A. Nur
    PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM), 2015, : 762 - 765
  • [33] Towards improving an algebraic marking scheme for tracing DDoS attacks
    Lee, Moon-Chuen
    He, Yi-Jun
    Chen, Zhaole
    International Journal of Network Security, 2009, 9 (03) : 204 - 213
  • [34] Provider-based deterministic packet marking against distributed DoS attacks
    Siris, Vasilios A.
    Stavrakis, Ilias
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2007, 30 (03) : 858 - 876
  • [35] Eagle Eyes: Protocol Independent Packet Marking Scheme to Filter Attack Packets and Reduce Collateral Damage During Flooding Based DoS and DDoS Attacks
    Saurabh, Samant
    Sairam, Ashok Singh
    2012 THIRD INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION TECHNOLOGY (ICCCT), 2012, : 141 - 146
  • [36] Counteracting DDoS attacks in multiple ISP domains using routing arbiter architecture
    Tupakula, UK
    Varadharajan, V
    ICON 2003: 11TH IEEE INTERNATIONAL CONFERENCE ON NETWORKS, 2003, : 455 - 460
  • [37] TDPF: a traceback-based distributed packet filter to mitigate spoofed DDoS attacks
    Fallah, Mehran S.
    Kahani, Nafiseh
    SECURITY AND COMMUNICATION NETWORKS, 2014, 7 (02) : 245 - 264
  • [38] IP packet size entropy-based scheme for detection of DoS/DDoS attacks
    Du, Ping
    Abe, Shunji
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2008, E91D (05) : 1274 - 1281
  • [39] Improved probabilistic packet marking scheme based on APPM-v6
    Feng Bo
    He Yusheng
    2014 IEEE 7TH JOINT INTERNATIONAL INFORMATION TECHNOLOGY AND ARTIFICIAL INTELLIGENCE CONFERENCE (ITAIC), 2014, : 380 - 385
  • [40] Dynamic probabilistic packet marking for efficient IP traceback
    Liu, Jenshiuh
    Lee, Zhi-Jian
    Chung, Yeh-Ching
    COMPUTER NETWORKS, 2007, 51 (03) : 866 - 882