SMARTech   Library Home
 

Georgia Tech's Institutional Repository >
College of Computing (CoC) >
School of Computer Science (SCS) >
School of Computer Science Technical Reports >

Title: Scalable Hash-based IP Traceback Using Rate-limited Probabilistic Packet Marking
Authors: Sung, Minho
Chiang, Jason
Xu, Jun
Subjects : Distributed denial of service (DDoS)
IP traceback
Packet logging and marking
Routers
Issue Date: 2006
Publisher: Georgia Institute of Technology
Series/Report no.: SCS Technical Report; GIT-CSS-06-08
Abstract: Recent surveys show that DDoS attack is still one of the major threats to the Internet security. Many techniques have been proposed to trace the origin of attacking packets, known as IP traceback problem, using either hash-based packet logging or probabilistic packet marking. However, both approaches have scalability problems under the heavy DDoS attacks in terms of the space and computational overheads. In this paper, we propose a novel scalable IP Traceback scheme by utilizing the advantage of both packet logging and marking to balance the overheads at routers and at the victim, hence scalable for both sides. The baseline idea of our approach is to sample a very small percentage (e.g., 1%) of packets at the routers, and save the digests of only sampled packets. At the same time, the routers mark their signature using very simple marking scheme into the marking field of sampled IP packets to send out the "information of logging" to the victim in probabilistic way to help the traceback procedure. We also propose a heuristic technique to improve the performance of the marking scheme. In the result, the number of attacking packets the victim should collect for the traceback procedure to achieve high level of traceback accuracy is much less than the numbers in previous PPM schemes, and also the computational and storage overhead in routers are much less than previous packet logging approach.
URI: http://hdl.handle.net/1853/14347
Appears in Collections:School of Computer Science Technical Reports

Files in This Item:

File Description SizeFormat
GT-CSS-06-08.pdf154.97 kBAdobe PDFView/Open

Items in SMARTech are protected by copyright, with all rights reserved, unless otherwise indicated.

 

Valid XHTML 1.0! DSpace Software Copyright © 2002-2007 MIT and Hewlett-Packard - Feedback