DocumentCode
3580532
Title
The Implementation of TCP Sequence Number Reference Model in Linux Kernel
Author
Dakhane, Dhananjay M. ; Deshmukh, Prashant R.
Author_Institution
Dept. of Comput. Sci. & Eng., Sipna Coll. of Eng. & Technol., Amravati, India
fYear
2014
Firstpage
444
Lastpage
447
Abstract
It is observed that covert channels can be easily implemented in TCP/IP stack. It is easily achieved by embedding the covert message in the various header fields seemingly filled with "Random" data such as TCP Sequence Number (SQN), IP Identification (ID) etc. Such manipulation of these fields which seems "random" at first sight but might be detected with the help of various techniques. In this research paper we are proposing Sequence Number Reference Model as a Proof-of-Concept for sending the covert message using TCP Sequence Number (SQN) field without changing the semantics of its header field. Covert message in the packet cannot be detected by the conventional covert channel detection techniques since not a single bit of this header field is modified. We are providing a mechanism by which sender can send the covert message and receiver can interpret the same in spite of the fact that the actual covert message will not be carried by the sequence number field of TCP header.
Keywords
Linux; operating system kernels; transport protocols; Linux kernel; SQN; TCP sequence number reference model; TCP/IP stack; covert message; Bandwidth; IP networks; Kernel; Linux; Payloads; Protocols; Semantics; IP Identification; Network Covert channel; TCP Sequence Number;
fLanguage
English
Publisher
ieee
Conference_Titel
Computational Intelligence and Communication Networks (CICN), 2014 International Conference on
Print_ISBN
978-1-4799-6928-9
Type
conf
DOI
10.1109/CICN.2014.104
Filename
7065523
Link To Document