A backpressure technique for filtering spoofed traffic at upstream routers

  • Authors:
  • S. Malliga;A. Tamilarasi

  • Affiliations:
  • Department of Computer Science and Engineering, Kongu Engineering College, Perundurai, Erode 638 052, Tamil Nadu, India.;Department of Computer Science and Engineering, Kongu Engineering College, Perundurai, Erode 638 052, Tamil Nadu, India

  • Venue:
  • International Journal of Security and Networks
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Ever increasing rate of Denial of Service (DoS) attacks presents severe security threats to the internet. In this study, a backpressure scheme to filter DoS attack traffic at the earliest possible is presented. This paper utilises markings stamped in the packets by the routers to detect DoS attacks. To improve the accuracy of detection, the detection process is augmented with hop count values from IP header. A backpressure technique partially deployed at the upstream routers is also proposed to prevent congestion at victim. Simulation studies show that our scheme drops most of the attack traffic at the earliest time.