Nanchang, China May 22 - 24, 2009

Nanchang, China May 22 - 24, 2009

WISA 2009

WISA 2009

Second International Symposium on

Web Information Systems and Applications

Second International Symposium on

Web Information Systems and Applications

Home > Table of Contents

 

Proceedings of the 2nd International Symposium on Web Information Systems and Applications (WISA 2009)

Nanchang, China, May 22-24, 2009

Editors: Fei Yu, Jiexian Zeng, and Guangxue Yue

AP Catalog Number: AP-PROC-CS-09CN001

ISBN: 978-952-5726-00-8 (Print), 978-952-5726-01-5 (CD-ROM)

Page(s): 257-260

A router-based technique to detect and defend against Low-rate Denial of Service

Zhu Lina, Zhu Dongzhao

Full text: PDF

Abstract

With the successful use of router technique, we consider to give routers additional function to defect and defend against LDOS. LDOS is a kind of miniature network attack which can affect TCP flows to zero or very low transmission bandwidth, just because it takes advantage of retransmission timeout of TCP. This sort of attack is difficult to identify due to its good cryptcity. We appiciate the distributed detection mechanism, and we add a new fast detection function on it . We can accurately and fast find and locate the LDOS with it. Otherwise, we always try to remove the attack without complicated arithmetic or losing legal data. At the end of this paper, we will show the new way can break up the attack burst into parts.

Index Terms

Network security; Low-rate; Denial of service ; retransmit-overtime

Copyright @ 2009 ACADEMY PUBLISHER All rights reserved