International Journal of Recent Trends in Engineering (IJRTE)

ISSN 1797-9617

Volume 1, Number 1, May 2009

Issue on Computer Science

Page(s): 518-522

An autonomous level defense for DoS/DDoS attacks

A. S. Malliga and B. A. Tamilarasi

IP traceback is useful in detecting and defending against Denial-of-service (DoS) attacks. Packet marking has been studied as a promising approach to realize IP traceback. An IP traceback system that is deployed at the level of Autonomous Systems (AS) to deal with these attacks is proposed in this study. Our system distinguishes itself by not requiring the knowledge of network topology, while tracing back a single packet, when compared with other IP traceback systems. The Autonomous System Border Router (ASBR) of each AS would mark the packets with the AS Number (ASN) that cross the router. The marked packets are then used to reconstruct the attack path involving the ASes. To facilitate reconstruction, we log the previous ASN in AS Traceback Server (ASTS) of each AS. To reduce the storage overhead, we partially implement the system. We evaluate and provide the performance of our system under partial deployment scenario.

Index Terms

DoS, Autonomous Systems, AS Border Router, AS Number, AS Traceback Server

