DocumentCode
3053712
Title
securing hybrid wired/mobile IP networks from TCP-flooding based denial-of-service attacks
Author
Taleb, Tarik ; Nishiyama, Hiroki ; Kato, Nei ; Nemoto, Yoshiaki
Author_Institution
Graduate Sch. of Inf. Sci., Tohoku Univ., Sendai
Volume
5
fYear
2005
fDate
2-2 Dec. 2005
Lastpage
2911
Abstract
Protection of mobile IP networks from denial-of-service (DoS) attacks, a serious security threat in today´s Internet, is a one major step toward making this paradigm a reality. The paper proposes a method to detect DoS attacks, issued from mobile users, in the vicinity of flooding sources and in early stages before they cripple the targeted system. The fundamental challenge in attack detection consists in distinguishing between simple flash events and DoS attacks so as not to deprive innocent users from having legitimate accesses. In the proposed mechanism, this distinction is based on the fact that legitimate TCP flows obey the congestion control protocol, whereas misbehaving sources remain unresponsive. Suspicious flows are sent a test feedback and are required to decrease their sending rates. Legitimacy of such flows is decided based on their responsiveness. The scheme performance is evaluated through a set of simulations and encouraging results are obtained: short detection latency and high detection accuracy
Keywords
IP networks; mobile computing; telecommunication security; telecommunication services; transport protocols; Internet; TCP-flooding; attack detection; congestion control protocol; denial-of-service attacks; hybrid wired-mobile IP networks; mobile users; Authentication; Computer crime; Cryptography; Delay; IP networks; Information security; Mobile computing; Protection; Wireless application protocol; Wireless networks;
fLanguage
English
Publisher
ieee
Conference_Titel
Global Telecommunications Conference, 2005. GLOBECOM '05. IEEE
Conference_Location
St. Louis, MO
Print_ISBN
0-7803-9414-3
Type
conf
DOI
10.1109/GLOCOM.2005.1578290
Filename
1578290
Link To Document