Deakin University
Browse

Source-based filtering scheme against DDOS attacks

Download (467.09 kB)
journal contribution
posted on 2008-01-01, 00:00 authored by F Yi, Shui Yu, Wanlei Zhou, J Hai, Alessio Bonti
IP address spoofing is employed by a lot of DDoS attack tools. Most of the current research on DDoS attack packet filtering depends on cooperation among routers, which is hard to achieve in real campaigns. Therefore, in the paper, we propose a novel filtering scheme based on source information in this paper to defend against various source IP address spoofing. The proposed method works independently at the potential victim side, and accumulates the source information of its clients, for instance, source IP addresses, hops from the server during attacks free period. When a DDoS attack alarm is raised, we can filter out the attack packets based on the accumulated knowledge of the legitimate clients. We divide the source IP addresses into n(1 ≤ n ≤ 32) segments in our proposed algorithm; as a result, we can therefore release the challenge storage and speed up the procedure of information retrieval. The system which is proposed by us and the experiments indicated that the proposed method works effectively and efficiently.

History

Journal

International journal of database theory and application

Volume

1

Pagination

9 - 20

Location

Korea

Open access

  • Yes

ISSN

2005-4270

Language

eng

Publication classification

C1 Refereed article in a scholarly journal

Copyright notice

2008, SERSC

Usage metrics

    Research Publications

    Categories

    No categories selected

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC