Autonomous System based Flow Marking Scheme for IP-Traceback

被引:0
|
作者
Aghaei-Foroushani, Vahid [1 ]
Zincir-Heywood, A. Nur [1 ]
机构
[1] Dalhousie Univ, Fac Comp Sci, Halifax, NS, Canada
关键词
AS-level IP-Traceback; Flow Base IP-Traceback; Probabilistic Flow Marking; DDoS attacks; Network Security; NETWORK;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Tracing IP packets to their sources, known as IP-Traceback, is a critical task in defending against IP spoofing and DoS attacks. There are several solutions to traceback to the origin of the attack. However, all these solutions require either all routers or ISPs to support the same IP-Traceback mechanism. To address this limitation, we propose an IP-Traceback approach at the level of autonomous systems, called Autonomous System-based Flow Marking, ASFM, to identify some key locations in the path where attacker packets are being forwarded. ASFM employs the BGP update message community attribute that enables information to be passed across ASs even if they are not necessarily involved in the IP-Traceback scheme. We also propose an authentication method, so a downstream AS can examine the correctness of the marking provided by the upstream ASs, thus eliminating the fake marking embedded by subverted routers. Finally, we evaluate and analyze the performance of our proposal, using real life datasets.
引用
收藏
页码:121 / 128
页数:8
相关论文
共 50 条
  • [31] Packet Marking With Distance Based Probabilities for IP Traceback
    Akyuz, Turker
    Sogukpinar, Ibrahim
    2009 FIRST INTERNATIONAL CONFERENCE ON NETWORKS & COMMUNICATIONS (NETCOM 2009), 2009, : 433 - 438
  • [32] Opportunistic Piggyback Marking for IP Traceback
    Cheng, Long
    Divakaran, Dinil Mon
    Lim, Wee Yong
    Thing, Vrizlynn L. L.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2016, 11 (02) : 273 - 288
  • [33] IP traceback with deterministic packet marking
    Belenky, A
    Ansari, N
    IEEE COMMUNICATIONS LETTERS, 2003, 7 (04) : 162 - 164
  • [34] IP traceback through (authenticated) deterministic flow marking: an empirical evaluation
    Aghaei-Foroushani, Vahid
    Zincir-Heywood, A. Nur
    EURASIP JOURNAL ON INFORMATION SECURITY, 2013, (01):
  • [35] IP traceback through (authenticated) deterministic flow marking: an empirical evaluation
    Vahid Aghaei-Foroushani
    A Nur Zincir-Heywood
    EURASIP Journal on Information Security, 2013 (1):
  • [36] Ant colony based IP traceback scheme
    Ranga V.
    Mandhar V.
    International Journal of Information Technology, 2018, 10 (4) : 447 - 455
  • [37] Branch label based probabilistic packet marking for IP traceback
    Ogawa, T
    Nakamura, F
    Wakahara, Y
    ICON 2003: 11TH IEEE INTERNATIONAL CONFERENCE ON NETWORKS, 2003, : 467 - 474
  • [38] Deterministic packet marking based on redundant decomposition for IP traceback
    Jin, Guang
    Yang, Jiangang
    IEEE COMMUNICATIONS LETTERS, 2006, 10 (03) : 204 - 206
  • [39] An IP traceback scheme based on hop count
    Amako, Katsuhiro
    Oki, Eiji
    IEICE COMMUNICATIONS EXPRESS, 2012, 1 (04): : 143 - 147
  • [40] A traceback approach with probabilistic packet marking IP based on cooperations
    Yan, D. (yandong200@gmail.com), 1600, Beijing University of Posts and Telecommunications (35):