IP address spoofing is employed by a lot of DDoS attack tools. Most of the current research on DDoS attack packet filtering depends on cooperation among routers, which is hard to achieve in real campaigns. Therefore, in the paper, we propose a novel filtering scheme based on source information in this paper to defend against various source IP address spoofing. The proposed method works independently at the potential victim side, and accumulates the source information of its clients, for instance, source IP addresses, hops from the server during attacks free period. When a DDoS attack alarm is raised, we can filter out the attack packets based on the accumulated knowledge of the legitimate clients. We divide the source IP addresses into )321(≤≤nn segments in our proposed algorithm; as a result, we can therefore release the challenge storage and speed up the procedure of information retrieval. The system which is proposed by us and the experiments indicated that the proposed method works effectively and efficiently.
목차
Abstract 1 Introduction 2 Source-Based Filter Scheme 2.1 Scheme Analyzing 2.2 Scheme Implementation 3 System Analysis and Algorithm 3.1 Memory Requirement 3.2 Filter Efficiency 3.3 Adaptive Analysis 4 Performance Evaluations and Algorithms 4.1 Performance Evaluations 4.2 Filter Algorithms 5 Conclusions and Future Work References
키워드
Network SecurityDDoSPacket Filtering.
저자
Fasheng Yi [ School of Engineering and Information Technology Deakin University, Department of Network Security, University of Electronic Science and Technology of China ]
Shui Yu [ School of Engineering and Information Technology Deakin University ]
Wanlei Zhou [ School of Engineering and Information Technology Deakin University ]
Jing Hai [ School of Engineering and Information Technology Deakin University ]
Alessio Bonti [ School of Engineering and Information Technology Deakin University ]
보안공학연구지원센터(IJDTA) [Science & Engineering Research Support Center, Republic of Korea(IJDTA)]
설립연도
2006
분야
공학>컴퓨터학
소개
1. 보안공학에 대한 각종 조사 및 연구
2. 보안공학에 대한 응용기술 연구 및 발표
3. 보안공학에 관한 각종 학술 발표회 및 전시회 개최
4. 보안공학 기술의 상호 협조 및 정보교환
5. 보안공학에 관한 표준화 사업 및 규격의 제정
6. 보안공학에 관한 산학연 협동의 증진
7. 국제적 학술 교류 및 기술 협력
8. 보안공학에 관한 논문지 발간
9. 기타 본 회 목적 달성에 필요한 사업
간행물
간행물명
International Journal of Database Theory and Application
간기
격월간
pISSN
2005-4270
수록기간
2008~2016
십진분류
KDC 505DDC 605
이 권호 내 다른 논문 / International Journal of Database Theory and Application vol.1 no.1