Title :
Block Spoofed Packets at Source (BSPS): A method for detecting and preventing all types of spoofed source IP packets and SYN flooding packets at source: A theoretical framework
Author :
Noureldien, Noureldien A. ; Hussein, Mashair O.
Author_Institution :
Dept. of Comput. Sci., Univ. of Sci. & Technol., Omdurman, Sudan
Abstract :
In this paper, we present a theoretical framework for a simple and efficient method that detects and blocks all types of source IP spoofed packets including subnet spoofing and TCP/SYN flooding packets at source. The method is based on a network authentication server (AS), which performs an authentication process on SYN packets. The authentication process verifies the legitimacy of SYN packet´s source IP address that initiate a connection request from a network subnet host to an external host. During the authentication process of SYN packets, AS identifies and blocks SYN packets with legal source IP address that chip in a TCP/SYN flooding attack. AS preserves network performance by exchanging authentication messages in plain text, and acts as a stateful inspection firewall and only SYN packets are subject for inspection. Our method which is capable to detect and prevent all types of spoofing packets including subnet spoofing contributes to standard ingress/egress methods in eliminating bogus traffic on the Internet.
Keywords :
IP networks; Internet; authorisation; message authentication; Internet; SYN flooding packet; TCP flooding packet; block spoofed packets at source; bogus traffic elimination; network authentication server; spoofed source IP packet; stateful inspection firewall; subnet spoofing; Authentication; Computer science; Floods; Inspection; Internet; Law; Legal factors; Network servers; TCPIP; Telecommunication traffic;
Conference_Titel :
Applications of Digital Information and Web Technologies, 2009. ICADIWT '09. Second International Conference on the
Conference_Location :
London
Print_ISBN :
978-1-4244-4456-4
Electronic_ISBN :
978-1-4244-4457-1
DOI :
10.1109/ICADIWT.2009.5273927