期刊文献+

基于路由器编码的自适应包标记(英文) 被引量:6

Router Numbering Based Adaptive Packet Marking
下载PDF
导出
摘要 拒绝服务攻击由于其高发性、大危害、难防范而成为因特网上的一大难题.研究人员为此提出了各种各样的对策,其中概率包标记具有较大的潜力.然而,现有的标记方案都存在各种各样的缺点.提出了一个新的标记方案,与其他标记方法相比,该方案具有反映灵敏、误报率低和计算量小的优点.此外,该方法还限制了攻击者伪造追踪信息的能力. DDoS attack represents a big problem to the Internet community for its high profile, severe damage, and difficult defending. Several countermeasures are proposed for it in the literature, among which, Probabilistic Packet Marking (PPM) is promising. However, all the existing marking schemes are bearing limitations in some aspects. In this paper, a new packet marking scheme is proposed, which is more prompt because of fewer packets needed, more scalable and more efficient in computation compared with other schemes. Furthermore, this scheme limits attackers' ability in spoofing trace message.
出处 《软件学报》 EI CSCD 北大核心 2007年第10期2652-2661,共10页 Journal of Software
基金 Supported by the National High-Tech Research and Development Plan of China under Grant Nos.2006AA01Z412, 2006AA01Z437, 2006AA01Z433 (国家高技术研究发展计划(863))
关键词 网络安全 追踪 拒绝服务 分布式拒绝服务 network security traceback DoS (denial of service) DDoS (distributed denial of service)
  • 相关文献

参考文献2

二级参考文献29

  • 1CERT.CERT Statistics.http://www.cert.org/stats/#incidents 被引量:2
  • 2Park K,Lee H.A proactive approach to distributed DoS attack prevention using route-based packet filtering.Technical Report,CSD00-017,Department of Computer Sciences,Purdue University,2000.http://www.cs.purdue.edu/nsl/dpf-tech.ps.gz 被引量:2
  • 3Savage S,Wetherall D,Karlin A,Anderson T.Practical network support for IP traceback.In:Proc.of the 2000 ACM SIGCOMM Conf.Stockholm,2000.295-306.http://www.acm.org/sigs/sigcomm/sigcomm2000/conf/paper/sigcomm2000-8-4.ps.gz 被引量:2
  • 4McGuire D,Krebs B.Attack on Internet called largest ever.2002.http://www.washingtonpost.com/ac2/wp-dyn/A828- 2002Oct22? 被引量:1
  • 5Lemos R.Attack targets info domain system.ZDNet News,2002.http://zdnet.com.com/2100-1105-971178.html 被引量:1
  • 6CERT.Overview of attack trends,2002.http://www.cert.org/archive/pdf/attack_trends.pdf 被引量:2
  • 7Ferguson P,Senie D.rfc2827,Network ingress filtering:defeating denial of service attacks which employ IP source address spoofing.IETF,May 2000.http://www.ietf.org/rfc/rfc2827.txt 被引量:2
  • 8Song DX,Perrig A.Advanced and authenticated marking schemes for IP traceback.In:Proc.of the IEEE INFOCOM 2001.http://www.ieee-infocom.org/2001/program.html 被引量:1
  • 9Park K,Lee H.On the effectiveness of probabilistic packet marking for IP traceback under denial of service attack.In:Proc.of the IEEE INFOCOM 2001.2001.338-347.http://www.ieee-infocom.org/2001/program.html 被引量:1
  • 10Snoeren AC,Partridge C,Sanchez LA,Jones CE,Tchakountio F,Kent ST,Strayer T.Hash-Based IP traceback.In:Proc.of the ACM SIGCOMM 2001 Conf.2001.San Diego,2001.3-14.http://www.acm.org/sigs/sigcomm/sigcomm2001/p1.html 被引量:2

共引文献54

同被引文献127

引证文献6

二级引证文献18

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部