Title :
Typical DoS/DDoS Threats under IPv6
Author :
Yang, Xinyu ; Ma, Ting ; Shi, Yi
Author_Institution :
Dept. of Comput. Sci. & Technol., Xi´´an Jiaotong Univ., Xi´´an
Abstract :
The DoS/DDoS attacks are always the leading threats to the Internet. With the development of Internet, IPv6 is inevitably taking the place of IPv4 as the main protocol of Internet. So the security issues of IPv6 become the focus of the present research. In this paper we mainly focus on the typical DoS/DDoS attacks under IPv6, which including the DoS attacks pertinent to IPv6 Neighbor Discovery protocol and DDoS attacks based on the four representative attack modes, they are respectively TCP-Flood, UDP-Flood, ICMP-Flood and Smurf. We do these attack experiments under IPv6 with and without IPSec configuration respectively. The experiments without IPSec validate the effectiveness of the typical DoS/DDoS attacks under IPv6, and those with IPSec show the effectiveness of IPSec against these attacks whose source addresses are spoofed.
Keywords :
Internet; security of data; telecommunication security; transport protocols; DoS/DDoS threat; ICMP; IPSec; IPv6; Internet; Smurf; TCP; UDP; Computer crime; Computer science; Internet; Peer to peer computing; Probes; Protocols; Security; Target tracking; Unicast; Attack experiments; DoS/DDoS; IPSec; IPv6;
Conference_Titel :
Computing in the Global Information Technology, 2007. ICCGI 2007. International Multi-Conference on
Conference_Location :
Guadeloupe City
Print_ISBN :
0-7695-2798-1
DOI :
10.1109/ICCGI.2007.61