Title :
Stepping stone detection at the server side
Author :
Lin, Ruei-Min ; Chou, Yi-Chun ; Chen, Kuan-Ta
Author_Institution :
Inst. of Inf. Sci., Acad. Sinica, Taipei, Taiwan
Abstract :
Proxy server was originally invented to enhance the performance of web browsing; however, it has been commonly used to perform online crime and malicious activities without being traced. Nevertheless, there is no general method available for detecting the use of stepping stones from the server´s perspective. In this paper, based on Nagle´s algorithm, we propose a server-based scheme to detect whether a host that establishes a TCP connection to the server is a stepping stone or not. Via Internet experiments on the PlanetLab, we show that our scheme achieves an average of 92% detection rate whenever our scheme applies. We believe the scheme, as a strong complement to current methods, can secure critical Internet services from being jeopardized by anonymous attacks.
Keywords :
Internet; computer network security; transport protocols; Internet services; Nagle algorithm; PlanetLab; TCP connection; malicious activities; online crime; proxy server; server side; stepping stone detection; web browsing; Accuracy; Algorithm design and analysis; Internet; Payloads; Peer to peer computing; Receivers; Servers;
Conference_Titel :
Computer Communications Workshops (INFOCOM WKSHPS), 2011 IEEE Conference on
Conference_Location :
Shanghai
Print_ISBN :
978-1-4577-0249-5
Electronic_ISBN :
978-1-4577-0248-8
DOI :
10.1109/INFCOMW.2011.5928952