NS-2 based IP traceback simulation against reflector based DDoS attack

  • Authors:
  • Hyung-Woo Lee;Taekyoung Kwon;Hyung-Jong Kim

  • Affiliations:
  • Dept. of Software, Hanshin University, Osan, Gyunggi, Korea;School of Computer Engineering, Sejong University, Seoul, Korea;Korea Information and Security Agency, Seoul, Korea

  • Venue:
  • AIS'04 Proceedings of the 13th international conference on AI, Simulation, and Planning in High Autonomy Systems
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

Reflector attack belongs to one of the most serious types of Distributed Denial-of-Service (DDoS) attacks, which can hardly be traced by traceback techniques, since the marked information written by any routers between the attacker and the reflectors will be lost in the replied packets from the reflectors. In response to such attacks, advanced IP traceback technology must be suggested. This study proposed a NS-2 based traceback system for simulating iTrace technique that identifies DDoS traffics with multi-hop iTrace mechanism based on TTL information at reflector for malicious reflector source trace. According to the result of simulation, the proposed technique reduced network load and improved filter/traceback performance on distributed reflector attacks.