作者: Tao Peng , Christopher Leckie , Kotagiri Ramamohanarao
关键词: Spoofing attack 、 Internet Protocol 、 Computer security 、 The Internet 、 Smurf attack 、 IP traceback 、 Computer network 、 Denial-of-service attack 、 Computer science 、 Probabilistic logic 、 Network packet
摘要: Distributed denial-of-service attack is one of the greatest threats to Internet today. One biggest difficulties in defending against this that attackers always use incorrect, or "spoofed" IP source addresses disguise their true origin. In paper, we present a packet marking algorithm which allows victim traceback approximate origin spoofed packets. The difference between proposal and previous proposals lies two points. First, develop three techniques adjust probability, significantly reduces number packets needed by reconstruct path. Second, give detailed analysis vulnerabilities probabilistic marking, describe version our adjusted scheme whose performance not affected fields.