DocumentCode :
2760676
Title :
DDoS Defense Using TCP_IP Header Analysis and Proactive Tests
Author :
Ye, Zhen ; Shi, Weiwei ; Ye, Dayong
Author_Institution :
Sch. of Comput. & Inf., Hefei Univ. of Technol., Hefei, China
Volume :
2
fYear :
2009
fDate :
25-26 July 2009
Firstpage :
548
Lastpage :
552
Abstract :
To defend against distributed denial of service (DDoS) attacks, one critical issue is to effectively isolate the attack traffic from the normal ones. A novel DDoS defense scheme based on TCP_IP Header Analysis and Proactive Tests (THAPT) is hereby proposed. Unlike most of the previous DDoS defense schemes that are passive in nature, the proposal uses proactive tests to identify and isolate the malicious traffic. Simulation results validate the effectiveness of our proposed scheme.
Keywords :
security of data; transport protocols; DDoS attacks; DDoS defense; TCP_IP header analysis; attack traffic; distributed denial of service; malicious traffic; proactive tests; Computer crime; Computer science; Information analysis; Information filtering; Information filters; Information technology; Internet; Telecommunication traffic; Testing; Traffic control; DDoS defense; TCP_IP header; proactive test;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Information Technology and Computer Science, 2009. ITCS 2009. International Conference on
Conference_Location :
Kiev
Print_ISBN :
978-0-7695-3688-0
Type :
conf
DOI :
10.1109/ITCS.2009.248
Filename :
5190299
Link To Document :
بازگشت