Title :
Vulnerability of small networks for the TTL expiry DDoS attack
Author :
Han, Young-Tae ; Ko, Nam-Seok ; Kim, Min-Gon ; Park, Hong-Shik
Author_Institution :
Electr. Eng., KAIST, Daejeon, South Korea
Abstract :
Even though core or backbone routers may have not vulnerability issues for TTL expiry DDoS attack, routers which have only a single processor for packet forwarding and control used in the small network may vulnerable for an TTL expiry DDoS attack. The reason is that forwarding and control functions are not completely separated so the packet dropping due to TTL expiration affects to packet forwarding. In this paper we presents effect of the TTL Expiry DDoS attack with the attack scenario in the testbed consisted with commercialized network equipments. The results show that the TTL attack using small packets in low utilization is more effective than the attack using large packets.
Keywords :
computer network security; TTL expiry DDoS attack; backbone routers; core routers; denial of service; packet dropping; packet forwarding; small networks vulnerability; Computer crime; Delay; IP networks; Internet; Protocols; Servers; Storms; DDoS; TTL expiry attack; network vulnerability;
Conference_Titel :
Computing, Communications and Applications Conference (ComComAp), 2012
Conference_Location :
Hong Kong
Print_ISBN :
978-1-4577-1717-8
DOI :
10.1109/ComComAp.2012.6154767