Title :
LAS: An effective anti-spoofing method using existing information
Author :
Baobao Zhang ; Jun Bi ; Jianping Wu
Author_Institution :
Inst. for Network Sci. & Cyberspace, Tsinghua Univ., Beijing, China
Abstract :
In today´s Internet, users can send packets with forged source IP addresses, called IP Spoofing, which causes many severe problems to the Internet, especially the security problem. Extensive methods have been proposed to prevent IP spoofing. One category of anti-spoofing methods is extra-information-based. The other category of anti-spoofing methods is existing-information-based. The existing-information-based anti-spoofing methods are much easier to deploy than the extra-information-based ones. Thus, we focus on the existing-information-based anti-spoofing methods in this paper. However, the existing existing-information-based anti-spoofing methods perform poorly on preventing IP spoofing. Therefore, in this paper we propose a new existing-information-based anti-spoofing method, named Link-state-based Anti-Spoofing (LAS), which works in a link-state-protocol-based network. LAS provides good effectiveness on preventing IP spoofing as our simulation results show that even if LAS is only deployed on 10% of routers in a link-state-protocol-based network, 80%~99% of spoofing cases in the network can be prevented in general.
Keywords :
IP networks; Internet; computer network security; IP spoofing; Internet; LAS; antispoofing method; existing-information-based anti-spoofing methods; link-state-based anti-spoofing; link-state-protocol-based network; security problem; source IP address; Filtering; IP networks; Law; Ports (Computers); Routing protocols; Topology; Anti-spoofing; DDoS; Source address validation;
Conference_Titel :
Computer Communication and Networks (ICCCN), 2014 23rd International Conference on
Conference_Location :
Shanghai
DOI :
10.1109/ICCCN.2014.6911764