A Table-driven approach for IP traceback based on network statistic analysis

Wei Tsung Su, Yi Hsun Chuang, Zong Bing Wu, Yau Hwang Kuo

Research output: Chapter in Book/Report/Conference proceedingConference contribution

2 Citations (Scopus)

Abstract

IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.

Original languageEnglish
Title of host publication11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings
Pages1633-1637
Number of pages5
Publication statusPublished - 2009 Jul 10
Event11th International Conference on Advanced Communication Technology, ICACT 2009 - Phoenix Park, Korea, Republic of
Duration: 2009 Feb 152009 Feb 18

Publication series

NameInternational Conference on Advanced Communication Technology, ICACT
Volume3
ISSN (Print)1738-9445

Other

Other11th International Conference on Advanced Communication Technology, ICACT 2009
CountryKorea, Republic of
CityPhoenix Park
Period09-02-1509-02-18

Fingerprint

Statistics
Routers
Labels
Internet

All Science Journal Classification (ASJC) codes

  • Electrical and Electronic Engineering

Cite this

Su, W. T., Chuang, Y. H., Wu, Z. B., & Kuo, Y. H. (2009). A Table-driven approach for IP traceback based on network statistic analysis. In 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings (pp. 1633-1637). [4809386] (International Conference on Advanced Communication Technology, ICACT; Vol. 3).
Su, Wei Tsung ; Chuang, Yi Hsun ; Wu, Zong Bing ; Kuo, Yau Hwang. / A Table-driven approach for IP traceback based on network statistic analysis. 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings. 2009. pp. 1633-1637 (International Conference on Advanced Communication Technology, ICACT).
@inproceedings{e2565765e897425299e2727fec392ab2,
title = "A Table-driven approach for IP traceback based on network statistic analysis",
abstract = "IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.",
author = "Su, {Wei Tsung} and Chuang, {Yi Hsun} and Wu, {Zong Bing} and Kuo, {Yau Hwang}",
year = "2009",
month = "7",
day = "10",
language = "English",
isbn = "9788955191387",
series = "International Conference on Advanced Communication Technology, ICACT",
pages = "1633--1637",
booktitle = "11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings",

}

Su, WT, Chuang, YH, Wu, ZB & Kuo, YH 2009, A Table-driven approach for IP traceback based on network statistic analysis. in 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings., 4809386, International Conference on Advanced Communication Technology, ICACT, vol. 3, pp. 1633-1637, 11th International Conference on Advanced Communication Technology, ICACT 2009, Phoenix Park, Korea, Republic of, 09-02-15.

A Table-driven approach for IP traceback based on network statistic analysis. / Su, Wei Tsung; Chuang, Yi Hsun; Wu, Zong Bing; Kuo, Yau Hwang.

11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings. 2009. p. 1633-1637 4809386 (International Conference on Advanced Communication Technology, ICACT; Vol. 3).

Research output: Chapter in Book/Report/Conference proceedingConference contribution

TY - GEN

T1 - A Table-driven approach for IP traceback based on network statistic analysis

AU - Su, Wei Tsung

AU - Chuang, Yi Hsun

AU - Wu, Zong Bing

AU - Kuo, Yau Hwang

PY - 2009/7/10

Y1 - 2009/7/10

N2 - IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.

AB - IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.

UR - http://www.scopus.com/inward/record.url?scp=67649873457&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=67649873457&partnerID=8YFLogxK

M3 - Conference contribution

AN - SCOPUS:67649873457

SN - 9788955191387

T3 - International Conference on Advanced Communication Technology, ICACT

SP - 1633

EP - 1637

BT - 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings

ER -

Su WT, Chuang YH, Wu ZB, Kuo YH. A Table-driven approach for IP traceback based on network statistic analysis. In 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings. 2009. p. 1633-1637. 4809386. (International Conference on Advanced Communication Technology, ICACT).