DocumentCode :
1629777
Title :
On design and evaluation of "intention-driven" ICMP traceback
Author :
Mankin, Allison ; Massey, Dan ; Chien-Lung Wu ; Wu, S. Felix ; Zhang, Lixia
fYear :
2001
fDate :
6/23/1905 12:00:00 AM
Firstpage :
159
Lastpage :
165
Abstract :
Since late 1999, DDoS (distributed denial of service) attack has drawn many attentions from both research and industry communities. Many potential solutions (e.g., ingress filtering, packet marking or tracing, and aggregate-based congestion control or rate limiting) have been proposed to handle this network bandwidth consumption attack. Among them, "ICMP traceback (iTrace)" is currently being considered as an industry standard by the IETF (Internet Engineering Task Force). While the idea of iTrace is very clever, efficient, reasonably secure and practical, it suffers a serious statistic problem such that the chance for "useful" and "valuable" iTrace messages can be extremely small against various types of DDoS attacks. This implies that most of the network resources spent on generating and utilizing iTrace messages will be wasted. Therefore, we propose a simple enhancement called "intention-driven" iTrace, which conceptually introduces an extra bit in the routing and forwarding process. With the new "intention-bit", it is shown that, through our simulation study, the performance of iTrace improves dramatically. This work has been proposed to IETF\´s ICMP Trace-Back working group
Keywords :
digital simulation; telecommunication congestion control; telecommunication network routing; telecommunication security; telecommunication standards; DDoS attacks; ICMP traceback; IETF; Internet Engineering Task Force; aggregate-based congestion control; distributed denial of service; forwarding; industry standard; ingress filtering; intention-bit; intention-driven ICMP traceback; intention-driven iTrace; intrusion detection system; network bandwidth; packet marking; rate limiting; routing; simulation; statistic problem; tracing; Bandwidth; Computer crime; Computer hacking; Information filtering; Information filters; Internet; Intrusion detection; Master-slave; Protocols; Routing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer Communications and Networks, 2001. Proceedings. Tenth International Conference on
Conference_Location :
Scottsdale, AZ
ISSN :
1095-2055
Print_ISBN :
0-7803-7128-3
Type :
conf
DOI :
10.1109/ICCCN.2001.956234
Filename :
956234
Link To Document :
بازگشت