作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (7): 131-133,. doi: 10.3969/j.issn.1000-3428.2008.07.046

• 安全技术 • 上一篇    下一篇

基于可变概率的快速IP包追踪方案

陆 峰,郑康锋,钮心忻,杨义先   

  1. (北京邮电大学网络与交换国家重点实验室信息安全中心,北京 100876)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-04-05 发布日期:2008-04-05

Fast IP Traceback Schemes Based on Variational Probability

LU Feng, ZHENG Kang-feng, NIU Xin-xin, YANG Yi-xian   

  1. (Information Security Center of State Key Laboratory of Networking and Switching, Beijing University of Posts and Telecommunications, Beijing 100876)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-04-05 Published:2008-04-05

摘要: 为了改进概率包标记方案的性能,提出两个能追踪大规模拒绝服务攻击可变概率包标记方案。采用可变概率标记,可识别和排除攻击者虚假标记信息。通过在路由器中记录IP地址发送状态,对包分片进行有序发送,降低了受害者重构路径时所需接收包的数量。

关键词: IP包追踪, 网络安全, 包标记

Abstract: The paper proposes two schemes which enhances the performance of PPM in following aspects. Because of ingenious design, the schemes can be used to tackle large-scale DDoS. And due to adopting varational probabilistic packet marking, they can recognize and eliminate spoofed marking inscribed by the attacker intentionally. By recording the state of IP address transmission in router and transmiting the packets fragments in order, the schemes can significantly reduce the number of packets required for path reconstruction.

Key words: IP traceback, network security, packet marking

中图分类号: