A Table-driven approach for IP traceback based on network statistic analysis

Wei Tsung Su, Yi Hsun Chuang, Zong Bing Wu, Yau Hwang Kuo

研究成果: Conference contribution

2 引文 (Scopus)

摘要

IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.

原文English
主出版物標題11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings
頁面1633-1637
頁數5
出版狀態Published - 2009 七月 10
事件11th International Conference on Advanced Communication Technology, ICACT 2009 - Phoenix Park, Korea, Republic of
持續時間: 2009 二月 152009 二月 18

出版系列

名字International Conference on Advanced Communication Technology, ICACT
3
ISSN(列印)1738-9445

Other

Other11th International Conference on Advanced Communication Technology, ICACT 2009
國家Korea, Republic of
城市Phoenix Park
期間09-02-1509-02-18

指紋

Statistics
Routers
Labels
Internet

All Science Journal Classification (ASJC) codes

  • Electrical and Electronic Engineering

引用此文

Su, W. T., Chuang, Y. H., Wu, Z. B., & Kuo, Y. H. (2009). A Table-driven approach for IP traceback based on network statistic analysis. 於 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings (頁 1633-1637). [4809386] (International Conference on Advanced Communication Technology, ICACT; 卷 3).
Su, Wei Tsung ; Chuang, Yi Hsun ; Wu, Zong Bing ; Kuo, Yau Hwang. / A Table-driven approach for IP traceback based on network statistic analysis. 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings. 2009. 頁 1633-1637 (International Conference on Advanced Communication Technology, ICACT).
@inproceedings{e2565765e897425299e2727fec392ab2,
title = "A Table-driven approach for IP traceback based on network statistic analysis",
abstract = "IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.",
author = "Su, {Wei Tsung} and Chuang, {Yi Hsun} and Wu, {Zong Bing} and Kuo, {Yau Hwang}",
year = "2009",
month = "7",
day = "10",
language = "English",
isbn = "9788955191387",
series = "International Conference on Advanced Communication Technology, ICACT",
pages = "1633--1637",
booktitle = "11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings",

}

Su, WT, Chuang, YH, Wu, ZB & Kuo, YH 2009, A Table-driven approach for IP traceback based on network statistic analysis. 於 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings., 4809386, International Conference on Advanced Communication Technology, ICACT, 卷 3, 頁 1633-1637, 11th International Conference on Advanced Communication Technology, ICACT 2009, Phoenix Park, Korea, Republic of, 09-02-15.

A Table-driven approach for IP traceback based on network statistic analysis. / Su, Wei Tsung; Chuang, Yi Hsun; Wu, Zong Bing; Kuo, Yau Hwang.

11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings. 2009. p. 1633-1637 4809386 (International Conference on Advanced Communication Technology, ICACT; 卷 3).

研究成果: Conference contribution

TY - GEN

T1 - A Table-driven approach for IP traceback based on network statistic analysis

AU - Su, Wei Tsung

AU - Chuang, Yi Hsun

AU - Wu, Zong Bing

AU - Kuo, Yau Hwang

PY - 2009/7/10

Y1 - 2009/7/10

N2 - IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.

AB - IP-spoofed DDoS attack is a serious security problem in Internet. Thus, an IP traceback approach is essential. In this paper, a fast IP traceback approach (FTA) based on network statistic analysis is proposed. By maintaining the Branch Label Table (BLT) which contains some network statistics in edge routers, the time of IP traceback procedure is efficiently reduced. In addition, an adaptive packet filter is proposed to mitigate the DDoS attacks. The packet drop rate adapts to the location of DDoS attackers and the queue length. Finally, ns-2 simulation is conducted to evaluate FTA. The simulation results show FTA substantially accelerates IP traceback procedure. Moreover, the proposed adaptive packet filter efficiently mitigates the DDoS attacks.

UR - http://www.scopus.com/inward/record.url?scp=67649873457&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=67649873457&partnerID=8YFLogxK

M3 - Conference contribution

AN - SCOPUS:67649873457

SN - 9788955191387

T3 - International Conference on Advanced Communication Technology, ICACT

SP - 1633

EP - 1637

BT - 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings

ER -

Su WT, Chuang YH, Wu ZB, Kuo YH. A Table-driven approach for IP traceback based on network statistic analysis. 於 11th International Conference on Advanced Communication Technology, ICACT 2009 - Proceedings. 2009. p. 1633-1637. 4809386. (International Conference on Advanced Communication Technology, ICACT).