Detection of Spoofing Attacks Using Intrusive Filters for DDoS
Source: K.S.Rangasamy College of Technology
Internet hosts are threatened by large-scale Distributed Denial-of-Service (DDoS) attacks. The Path Identification DDoS defense scheme has recently been proposed as a deterministic packet marking scheme that allows a DDoS victim to filter out attack packets on a per packet basis with high accuracy after only a few attack packets are received. This paper proposes the Stack Path identification marking, a new packet marking scheme based on path identification, and new filtering mechanisms. The Stack Path Identification marking scheme consists of two new marking methods that substantially improve Path identifier's incremental deployment performance i.e., Stack-based marking and Write-ahead marking.
| Format: | Size: | 108.90 | |
| Date: | Nov 2008 |
People who downloaded this item also downloaded
- Securing Layer 2
- Cloud Computing: What It Is and What It Can Do for You
- Address Translation (NAT) and Port Address Translation (PAT)
- StackPi: New Packet Marking and Filtering Mechanisms for DDoS and IP Spoofing Defense
- Controlling IP Spoofing Based DDoS Attacks Through Inter-Domain Packet Filters



