Topology based packet marking for IP traceback


Autoria(s): Alwis, Harendra A.; Doss, Robin C.; Hewage, Praveen S.; Chowdhury, Morshed U.
Contribuinte(s)

Tucker, Rod

Data(s)

01/01/2006

Resumo

IP source address spoofing exploits a fundamental weakness in the Internet Protocol. It is exploited in many types of network-based attacks such as session hijacking and Denial of Service (DoS). Ingress and egress filtering is aimed at preventing IP spoofing. Techniques such as History based filtering are being used during DoS attacks to filter out attack packets. Packet marking techniques are being used to trace IP packets to a point that is close as possible to their actual source. Present IP spoofing  countermeasures are hindered by compatibility issues between IPv4 and IPv6, implementation issues and their effectiveness under different types of attacks. We propose a topology based packet marking method that builds on the flexibility of packet marking as an IP trace back method while overcoming most of the shortcomings of present packet marking techniques.<br />

Identificador

http://hdl.handle.net/10536/DRO/DU:30006095

Idioma(s)

eng

Publicador

University of Melbourne

Relação

http://dro.deakin.edu.au/eserv/DU:30006095/doss-topologoybasedpacket-2006.pdf

http://rds.yahoo.com/_ylt=A0oGkjwPuaRJnPUA2WNXNyoA;_ylu=X3oDMTEyZHJtZ29pBHNlYwNzcgRwb3MDMQRjb2xvA3NrMQR2dGlkA0Y4MjNfOTI-/SIG=128n6b3ml/EXP=1235618447/**http://www.ee.unimelb.edu.au/atnac2006/papers/21.pdf

Direitos

2006, The Author

Palavras-Chave #IP spoofing #Topology Based Packet Marking (TBPM) #Denial of Service Attack (DoS) #ingress filtering #egress filtering #packet marking #IP trace-back #ICMP
Tipo

Conference Paper