Overview of IPv6 Based DDoS and DoS Attacks Detection Mechanisms

被引:7
|
作者
Bahashwan, Abdullah Ahmed [1 ]
Anbar, Mohammed [1 ]
Hanshi, Sabri M. [2 ]
机构
[1] Univ Sains Malaysia USM, Natl Adv IPv6 Ctr NAv6, Gelugor 11800, Penang, Malaysia
[2] Seiyun Community Coll, Hadhramaut, Yemen
来源
关键词
IPv6; ICMPv6; NDP; ICMPv6 based DDoS & DoS utilization; IDS; FRAMEWORK; SYSTEM;
D O I
10.1007/978-981-15-2693-0_11
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, the number of Internet users and devices are rapidly increased. For this reason, the Internet Assigned Number Authority (IANA) launched a new protocol called Internet Protocol version six (IPv6) next generation. The IPv6 provides new features that fit the internet revolution. IPv6 is equipped with new protocols such as Neighbor Discovery Protocol (NDP) and Internet Control Messages protocol version six (ICMPv6). In fact, ICMPv6 is considered as the backbone of the IPv6 protocol since it is responsible for many key functions like the NDP process. In addition, the NDP protocol is a stateless protocol that gives the lack of authentication to NDP messages, which is vulnerable to many types of attacks such as Distributed Denial of Services (DDoS) and Denial of Services (DoS) flooding attacks. In this type of attacks, the attacker sends an enormous volume of abnormal traffic to increase network congestion and break down the network. Under those circumstances, the first line of defense in a network has been supplemented by additional devices and tools that supervise the network activities and monitor the network traffic behaviors as well as to stop unauthorized intrusions. Overall, the aim of this review paper is to give pure thoughts about the IPv6 features and the most important related protocols like ICMPv6 protocol and NDP protocol. Also, this article discusses DDoS and DoS attack based on ICMPv6 protocol. Likewise, this article gives a comprehensive review of the IPv6 Intrusion Detection Systems based on DDoS & DoS attacks with their features and security limitations.
引用
收藏
页码:153 / 167
页数:15
相关论文
共 50 条
  • [21] Rule-Based Mechanism to Detect Denial of Service (DoS) Attacks on Duplicate Address Detection Process in IPv6 Link Local Communication
    Ul Rehman, Shafiq
    Manickam, Selvakumar
    2015 4TH INTERNATIONAL CONFERENCE ON RELIABILITY, INFOCOM TECHNOLOGIES AND OPTIMIZATION (ICRITO) (TRENDS AND FUTURE DIRECTIONS), 2015,
  • [22] 基于IPv6的DDoS攻击分析
    刘铁武
    向昌盛
    时凌云
    湖南工程学院学报(自然科学版), 2016, 26 (03) : 37 - 41
  • [23] COMPARISON OF ATTACKS ON IPV4 AND IPV6 PROTOCOLS
    Ciglaric, Mojca
    Krevl, Andrej
    Pancur, Matjaz
    EUROMEDIA'2009, 2009, : 122 - 127
  • [24] Data Spoofing Attacks by IPv6 Tunnels
    Cui, Yu
    Tian, Zhi-Hong
    Fang, Bin-Xing
    Zhang, Hong-Li
    Zhang, Wei-Zhe
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2013, E96B (11) : 2875 - 2882
  • [25] A link signature based DDoS attacker tracing algorithm under IPv6
    Yang, Xinyu
    Ma, Ting
    PROCEEDINGS OF FUTURE GENERATION COMMUNICATION AND NETWORKING, MAIN CONFERENCE PAPERS, VOL 1, 2007, : 50 - 55
  • [26] A link signature based DDoS attacker tracing algorithm under IPv6
    Ma, Ting
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2009, 3 (02): : 27 - 36
  • [27] An Overview of DDoS attacks based on DNS
    Alieyan, Kamal
    Kadhum, Mohammed M.
    Anbar, Mohammed
    Ul Rehman, Shafiq
    Alajmi, Naser K. A.
    2016 INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY CONVERGENCE (ICTC 2016): TOWARDS SMARTER HYPER-CONNECTED WORLD, 2016, : 276 - 280
  • [28] A Study on Path Behavior Characteristics of IPv6 Based Reflector Attacks
    Meenakshi, S. P.
    Raghavan, S. V.
    Bhaskar, S. M.
    2011 IEEE 36TH CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN), 2011, : 927 - 933
  • [29] Intrusion detection of DoS/DDoS and probing attacks for web services
    Zheng, J
    Hu, MZ
    ADVANCES IN WEB-AGE INFORMATION MANAGEMENT, PROCEEDINGS, 2005, 3739 : 333 - 344
  • [30] Detection of IPv6 routing attacks using ANN and a novel IoT dataset
    Emec, Murat
    ETRI JOURNAL, 2025,