首页> 外文期刊>IEEE Transactions on Parallel and Distributed Systems >A More Practical Approach for Single-Packet IP Traceback using Packet Logging and Marking
【24h】

A More Practical Approach for Single-Packet IP Traceback using Packet Logging and Marking

机译:使用数据包记录和标记进行单数据包IP追溯的更实用方法

获取原文
获取原文并翻译 | 示例
           

摘要

Tracing IP packets to their origins is an important step in defending Internet against denial-of-service attacks. Two kinds of IP traceback techniques have been proposed as packet marking and packet logging. In packet marking, routers probabilistically write their identification information into forwarded packets. This approach incurs little overhead but requires large flow of packets to collect the complete path information. In packet logging, routers record digests of the forwarded packets. This approach makes it possible to trace a single packet and is considered more powerful. At routers forwarding large volume of traffic, the high storage overhead and access time requirement for recording packet digests introduce practicality problems. In this paper, we present a novel scheme to improve the practicality of log-based IP traceback by reducing its overhead on routers. Our approach makes an intelligent use of packet marking to improve scalability of log-based IP traceback. We use mathematical analysis and simulations to evaluate our approach. Our evaluation results show that, compared to the state-of-the-art log-based approach called hash-based IP traceback, our approach maintains the ability to trace single IP packet while reducing the storage overhead by half and the access time overhead by a factor of the number of neighboring routers.
机译:跟踪IP数据包的来源是保护Internet免受拒绝服务攻击的重要一步。已经提出了两种IP追溯技术,即数据包标记和数据包记录。在数据包标记中,路由器可能会将其标识信息写入转发的数据包中。这种方法的开销很小,但是需要大量的数据包来收集完整的路径信息。在数据包日志记录中,路由器记录转发数据包的摘要。这种方法使跟踪单个数据包成为可能,并且被认为更强大。在转发大量流量的路由器上,记录分组摘要的高存储开销和访问时间要求带来了实用性问题。在本文中,我们提出了一种新颖的方案,可通过减少其在路由器上的开销来提高基于日志的IP追溯的实用性。我们的方法巧妙地利用了数据包标记,以提高基于日志的IP跟踪的可伸缩性。我们使用数学分析和模拟来评估我们的方法。我们的评估结果表明,与最先进的基于日志的方法(称为基于哈希的IP跟踪)相比,我们的方法保持了跟踪单个IP数据包的能力,同时将存储开销减少了一半,访问时间开销减少了一半。相邻路由器数量的一个因素。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号