A Logless Fast IP Traceback Scheme Against DDoS Attacks

JING Yi-nan,WANG Xue-ping,XIAO Xiao-chun,ZHANG Gen-du
DOI: https://doi.org/10.1049/cp:20061579
2006-01-01
Abstract:Distributed denial-of-service attack is one of the major threats to Internet currently.IP traceback is a technique to trace back the attack sources in presence of IP spoofing,and plays a key role in defense for DDoS attacks.Compared with other IP traceback techniques,the probabilistic packet marking (PPM) scheme has more advantages.However,because of low marking information utilization,its traceback speed is still too slow.In order to traceback attackers as quickly as possible,a logless fast IP traceback (LFIT) scheme is proposed,which uses a few router storage space and in-band channel to improve the marking information utilization. Simulation results show that it has two distinct advantages,namely faster traceback speed and little router and network overhead.
What problem does this paper attempt to address?