Ingress Filtering at Edge Network to Protect VPN Service From DOS Attack
Internet Protocol (IP) examines only the packet header to forward the packet but it does not examine the data in it. As internet is open to public, the seeking for sensitive data by the attacker has increased. It has become a necessity to protect data through the Internet. Virtual Private Network (VPN) is a popular service to logically construct private network using the existing public infrastructure. It helps in constructing a geographically dispersed LAN that can securely communicate data using the Internet as the backbone communication network. IP Security (IPSec) VPN provides confidentiality, integrity and availability through tunnelling and encryption. IPSec protocol provides various security features but it does not provide any protection against Denial of Service (DoS) attack.