Title :
A Distributed-Log-based IP Traceback Scheme to Defeat DDoS Attacks
Author :
Jing, Yinan ; Li, Jingtao ; Wang, Xueping ; Xiao, Xiaochun ; Zhang, Gendu
Author_Institution :
Sch. of Inf. Sci. & Eng., Fudan Univ., Shanghai
Abstract :
Distributed denial-of-service attacks have become the major threat to Internet today. IP traceback is one of the most effective techniques to defeat these attacks by identifying attack sources even in the presence of IP spoofing. Because of low marking packet utilization, the convergence time of traditional probabilistic packet marking (PPM) schemes is still too long. In order to shorten the convergence time, a distributed-log-based IP traceback scheme is proposed. Theoretical analysis and simulation results show that this scheme not only can converge more quickly than previous PPM schemes, but also has much less log overhead than other log-based schemes
Keywords :
IP networks; Internet; quality of service; security of data; telecommunication security; DDoS attack; IP traceback scheme; Internet protocol; distributed denial-of-service; log-based scheme; Algorithm design and analysis; Analytical models; Computer crime; Convergence; Degradation; Filters; Information science; Internet; Intrusion detection; Testing;
Conference_Titel :
Advanced Information Networking and Applications, 2006. AINA 2006. 20th International Conference on
Conference_Location :
Vienna
Print_ISBN :
0-7695-2466-4
DOI :
10.1109/AINA.2006.22