Title :
Performance evaluation of inter-domain IP traceback
Author :
Sawai, Yuko ; Oe, Masafumi ; Iida, Katsuyoshi ; Kadobayashi, Youki
Author_Institution :
Graduate Sch. of Inf. Sci., Nara Inst. of Sci. & Technol., Japan
fDate :
23 Feb.-1 March 2003
Abstract :
IP traceback is technology used to find the true source address of a Distributed Denial of Service (DDoS) attack with source address spoofing. We focus on IP option traceback (IP-OPT) for inter-domain IP traceback. In the Passive Detection Packet (PDP) method, which is a basic mechanism of IP-OPT, there is a trade off between the amount of trace traffic and the detection time for the path of attack time. However, no analysis of this condition has been made at this time. Thus, we mathematically analyze the tradeoff of PDP, and show that 1.1×10-4 is the optimal value of the pacekt generation probability for IP-OPT through numerical experiments.
Keywords :
Internet; performance evaluation; probability; telecommunication security; telecommunication traffic; transport protocols; DDoS attack; IP option traceback; IP-OPT; Internet; Internet protocol; detection time; distributed denial of service attack; inter-domain IP traceback; packet generation probability; passive detection packet method; performance evaluation; source address spoofing; trace traffic; unauthorized computer access; Capacity planning; Computer crime; Delta modulation; Information science; Mathematical model; Protection; Protocols; Web and internet services;
Conference_Titel :
Telecommunications, 2003. ICT 2003. 10th International Conference on
Print_ISBN :
0-7803-7661-7
DOI :
10.1109/ICTEL.2003.1191475