• DocumentCode
    2760676
  • Title

    DDoS Defense Using TCP_IP Header Analysis and Proactive Tests

  • Author

    Ye, Zhen ; Shi, Weiwei ; Ye, Dayong

  • Author_Institution
    Sch. of Comput. & Inf., Hefei Univ. of Technol., Hefei, China
  • Volume
    2
  • fYear
    2009
  • fDate
    25-26 July 2009
  • Firstpage
    548
  • Lastpage
    552
  • Abstract
    To defend against distributed denial of service (DDoS) attacks, one critical issue is to effectively isolate the attack traffic from the normal ones. A novel DDoS defense scheme based on TCP_IP Header Analysis and Proactive Tests (THAPT) is hereby proposed. Unlike most of the previous DDoS defense schemes that are passive in nature, the proposal uses proactive tests to identify and isolate the malicious traffic. Simulation results validate the effectiveness of our proposed scheme.
  • Keywords
    security of data; transport protocols; DDoS attacks; DDoS defense; TCP_IP header analysis; attack traffic; distributed denial of service; malicious traffic; proactive tests; Computer crime; Computer science; Information analysis; Information filtering; Information filters; Information technology; Internet; Telecommunication traffic; Testing; Traffic control; DDoS defense; TCP_IP header; proactive test;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Technology and Computer Science, 2009. ITCS 2009. International Conference on
  • Conference_Location
    Kiev
  • Print_ISBN
    978-0-7695-3688-0
  • Type

    conf

  • DOI
    10.1109/ITCS.2009.248
  • Filename
    5190299