DocumentCode :
3255177
Title :
Towards a Cooperative Mechanism Based Distributed Source Address Filtering
Author :
Jie Li ; Jun Bi ; Jianping Wu
Author_Institution :
Inst. for Network Sci. & Cyberspace, Tsinghua Univ., Beijing, China
fYear :
2013
fDate :
July 30 2013-Aug. 2 2013
Firstpage :
1
Lastpage :
7
Abstract :
While making the Internet totally trustworthy is intractable, making as trustworthy as possible is a crucial problem. Within this landscape, authentication of the IP source address remains one important topic in need of further study. However, most source address validation methods are difficult to implement in practice because of deployment difficulties. This research designs an efficient inter-domain distributed source address validation solution (CatchIt). By employing a novel routing choice notification scheme, CatchIt makes the deployed ASes intelligent by allowing them cooperate to acquire the valid incoming path information of packets. With such knowledge, the deployed ASes can accurately authenticate the source address without the need for any modifications to the de facto routing protocol and packet structure. Moreover, CatchIt helps the deployed ASes proactively and quickly filter spoofed packets before they imperil the network. CatchIt also avoids any false positive, even under partial deployment. Our evaluation also shows that CatchIt is effective and accurate when catching spoofed packets while incurring a low overhead; CatchIt maintains an early deploy and rapidly benefit incremental deployment incentive mechanism.
Keywords :
IP networks; Internet; authorisation; cooperative communication; routing protocols; CatchIt; IP source address; Internet; authentication; cooperative mechanism; de facto routing protocol; deployed ASes; distributed source address filtering; incremental deployment incentive mechanism; inter-domain distributed source address validation solution; packet structure; routing choice notification; spoofed packets; valid incoming path information; Artificial intelligence; Authentication; Filtering; IP networks; Internet; Routing; Topology;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer Communications and Networks (ICCCN), 2013 22nd International Conference on
Conference_Location :
Nassau
Print_ISBN :
978-1-4673-5774-6
Type :
conf
DOI :
10.1109/ICCCN.2013.6614204
Filename :
6614204
Link To Document :
بازگشت