• DocumentCode
    2342814
  • Title

    Detecting and Preventing IP-spoofed DDoS Attacks by Encrypted Marking Based Detection and Filtering (EMDAF)

  • Author

    Nagaratna, M. ; Prasad, V. Kamakshi ; Kumar, S. Tanuz

  • Author_Institution
    JNTU Hyderabad, Hyderabad, India
  • fYear
    2009
  • fDate
    27-28 Oct. 2009
  • Firstpage
    753
  • Lastpage
    755
  • Abstract
    Distributed Denial of Service (DDoS) attacks are the major threat to the current internet world. Source IP Address spoofing in one of the approach to perform Distributed Denial of Service (DDoS) attacks. In this scenario the packet true origin is difficult to identify. Thus the defense against the Distributed Denial of Service (DDoS) attack is very complex to handle. We propose a novel scheme which is based on a firewall. This firewall can distinguish the attack packets from the packets sent by legitimate users based on the marking value on the packet, and thus filter out most of the attack packets. Compared to other packet-marking based solutions, our scheme is very effective and has a very low deployment cost. In the implementation of this scheme we would require the cooperation of only about 10% of the Internet routers in the marking process, and server to generate encrypted marking for secured transmission. The scheme allows the firewall to Detected and prevents the DDoS attacks from the first packet itself.
  • Keywords
    Internet; authorisation; cryptography; IP-spoofed DDoS attack detection; IP-spoofed DDoS attack prevention; Internet routers; distributed denial of service attacks; encrypted marking based detection and filtering; firewall; packet-marking based solution; secured transmission; source IP address spoofing; Communications technology; Computer crime; Computer networks; Cryptography; Information filtering; Information filters; Network servers; TCPIP; Web and internet services; Web server; Distributed denial-of-service attacks; IP address spoofing; firewall; packet filtering and encryption;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advances in Recent Technologies in Communication and Computing, 2009. ARTCom '09. International Conference on
  • Conference_Location
    Kottayam, Kerala
  • Print_ISBN
    978-1-4244-5104-3
  • Electronic_ISBN
    978-0-7695-3845-7
  • Type

    conf

  • DOI
    10.1109/ARTCom.2009.167
  • Filename
    5328122