Title :
DoS packet filter using DNS information
Author :
Chiba, Tsuyoshi ; Katoh, Takashi ; Bista, Bhed Bahadur ; Takata, Toyoo
Author_Institution :
Fac. of Software & Inf. Sci., Iwate Perfectural Univ., Japan
Abstract :
A DoS (denial of service) attack is one of the most serious threats in the Internet. It is important to protect the resources and services from the DoS attack, but it is difficult to distinguish normal traffic and DoS attack traffic because the DoS attackers generally hide their true identities/origins. In this paper, we propose a technique to reduce the influence of the DoS attack without disturbing the demand of the regular users by allocating the information, when DoS attack occurs, to the filtering rules. This can be done by using DNS request replies.
Keywords :
Internet; filtering theory; security of data; telecommunication security; telecommunication traffic; DNS information; DoS attack traffic; Internet; denial-of-service; packet filter; Computer crime; Computer networks; Information filtering; Information filters; Network servers; Protection; Routing; Telecommunication traffic; Web and internet services; Web server;
Conference_Titel :
Advanced Information Networking and Applications, 2006. AINA 2006. 20th International Conference on
Print_ISBN :
0-7695-2466-4
DOI :
10.1109/AINA.2006.155