• DocumentCode
    2504771
  • Title

    A model for analysis of SYN flood DoS attacks

  • Author

    Nissanke, Nimal ; Sun, Jun

  • Author_Institution
    London South Bank University, 103 Borough Rd, SE1 0AA, UK
  • fYear
    2008
  • fDate
    Sept. 28 2008-Oct. 2 2008
  • Firstpage
    1
  • Lastpage
    9
  • Abstract
    Denial of Service (DoS) attacks pose a major threat to the use of the Internet for delivering critical commercial and public services. With reference to techniques that rely on better system configuration, in particular, TCP settings, this paper presents a novel mathematical model for understanding SYN flood DoS attacks considering both statistical properties of incoming legitimate and adversarial SYN traffic and, unlike in existing works, Round Trip Time (RTT) of TCP traffic. The approach relies on stochastic simulations for the general case but provides a closed-form solution for the case of incoming SYN traffic conforming to a Poisson process and backlog queues having an infinite capacity.
  • Keywords
    Analytical models; Ash; Computer crime; Mathematical model; Random variables; Servers; Stochastic processes; Denial of Service (DoS) attacks; modelling network traffic; stochastic simulation;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Telecommunications Network Strategy and Planning Symposium, 2008. Networks 2008. The 13th International
  • Conference_Location
    Budapest
  • Print_ISBN
    978-963-8111-68-5
  • Type

    conf

  • DOI
    10.1109/NETWKS.2008.6231359
  • Filename
    6231359