Dissertation > Excellent graduate degree dissertation topics show

IP Traceback Strategy Based on Re-marking to Marked Packet Fragment

Author: LiJia
Tutor: LiMingChu
School: Dalian University of Technology
Course: Software Engineering
Keywords: IP traceback DDoS PPM Time complexity Convergence time
CLC: TP393.08
Type: Master's thesis
Year: 2008
Downloads: 53
Quote: 1
Read: Download Dissertation

Abstract


With the development of network technology and applications, the network security problems have been more and more important. Because of the convenience to implement、difficulty in defensing and tracing, the denial of service attack and defense has been one of the most difficult problems, which did a great harm to the networks society. So many researchers have done a lot in this field and provide some valuable countermeasures. IP traceback technology is one of the important measures to the denial of service and defense. This paper mainly studies on IP traceback technology and probabilistic packet marking algorithm.This paper mainly contains following aspects: the principle of the denial of service and defense, attack methods and related countermeasures, research on virtues and defects of tracing project based on packet marking algorithm, and then had an improvement on probabilistic packet marking.In basic probabilistic packet marking(PPM) schemes,the high time complexity of path reconstruction for the victims who receive marked packet,lead to increase of false positives and convergence time.A new scheme to solve this problem is present.It doesn’t use the scheme to take TTL field as marking message which was mostly used in many PPM schemes.The eight fragments which stands for the marked router’s address information are placed in 16-bit identifier of IP packet.Fragments of the whole group marking message are re-marked,using a hash function whose input is the TTL value of IP packet. In this way the matching work in path reconstruction can be predigested,time complexity and convergence time of path reconstruction can be decreased. And at the same time false positives is reduced.Most existing packet marking schemes are implemented in IPv4, so the feasibility in IPv6 is explored in this paper.In the end, in order to evaluate the performance of the improvement algorithm, we construct a more attack paths simulation network on network simulation software NS2. The advantage between improved scheme and basic scheme can be educed based on the path reconstruction time in victim.

Related Dissertations

  1. Chattering Elimination and Terminal Sliding Mode Surface Design for Sliding Mode Control,TP13
  2. The Research of Attack Source Traceback in Distributed Denial-of-Service Attacks Based on VoIP,TP393.08
  3. Analysis for LDPC Based on the IEEE 802.16e Standards in the Underwater Laser Communication System,TN929.1
  4. DDoS detection technology,TP393.08
  5. Legal Problems of the Standard PPM,D922.68
  6. The Design of Coal Mining and Excavation Connection Decision Support System Based on GIS,TD822
  7. Flow-based self-similarity in IPv6 DDoS detection method,TP393.08
  8. A Model of Coorperation Defense DDoS Attack Based on Client Reputation,TP393.08
  9. Wireless laser communication modulation system design and research,TN929.1
  10. Detecting and Implementing DDoS Attacks Based on IP Address Correlation,TP393.08
  11. Research on Denial of Service Attacks and Self-similar Network Traffic,TP393.08
  12. Detection of Distributed Denial of Service Attacks Based on Network Traffic Characteristics Analysis,TP393.08
  13. Research on Some Key Technologies for the Defense Against DDoS Attacks,TP393.08
  14. Research on the Prevention of SYN Flood Attack Based on Turing Tests,TP393.08
  15. Research and Implementation of Forensics System on DDoS Attack Based on Botnet,TP393.08
  16. Research on DDoS Attack and Prevention Technology,TP393.08
  17. Improvement of Deep Packet Service Identification in P2P Network,TP393.02
  18. Research and Application of Defending Distributed Denial of Service Attack,TP393.08
  19. Fujian Telecom IDC safe and value-added services,TN915.08
  20. Research on Channel Capacity of M-PPM UWB Multiple Access,TN925
  21. IP Traceback Technology and Its Application to Defense of DDoS Attack,TP393.08

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile