Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

Coordination of Anti-Spoofing Mechanisms in Partial Deployments

Full metadata record
DC Field Value Language
dc.contributor.authorAn, Hyok-
dc.contributor.authorLee, Heejo-
dc.contributor.authorPerrig, Adrian-
dc.date.accessioned2021-09-03T16:36:42Z-
dc.date.available2021-09-03T16:36:42Z-
dc.date.created2021-06-16-
dc.date.issued2016-12-
dc.identifier.issn1229-2370-
dc.identifier.urihttps://scholar.korea.ac.kr/handle/2021.sw.korea/86782-
dc.description.abstractInternet protocol (IP) spoofing is a serious problem on the Internet. It is an attractive technique for adversaries who wish to amplify their network attacks and retain anonymity. Many approaches have been proposed to prevent IP spoofing attacks; however, they do not address a significant deployment issue, i.e., filtering inefficiency caused by a lack of deployment incentives for adopters. To defeat attacks effectively, one mechanism must be widely deployed on the network; however, the majority of the antispoofing mechanisms are unsuitable to solve the deployment issue by themselves. Each mechanism can work separately; however, their defensive power is considerably weak when insufficiently deployed. If we coordinate partially deployed mechanisms such that they work together, they demonstrate considerably superior performance by creating a synergy effect that overcomes their limited deployment. Therefore, we propose a universal antispoofing (UAS) mechanism that incorporates existing mechanisms to thwart IP spoofing attacks. In the proposed mechanism, intermediate routers utilize any existing anti-spoofing mechanism that can ascertain if a packet is spoofed and records this decision in the packet header. The edge routers of a victim network can estimate the forgery of a packet based on this information sent by the upstream routers. The results of experiments conducted with real Internet topologies indicate that UAS reduces false alarms up to 84.5% compared to the case where each mechanism operates individually.-
dc.languageEnglish-
dc.language.isoen-
dc.publisherKOREAN INST COMMUNICATIONS SCIENCES (K I C S)-
dc.subjectPACKET MARKING-
dc.subjectDDOS-
dc.subjectDEFENSE-
dc.titleCoordination of Anti-Spoofing Mechanisms in Partial Deployments-
dc.typeArticle-
dc.contributor.affiliatedAuthorLee, Heejo-
dc.identifier.doi10.1109/JCN.2016.000129-
dc.identifier.scopusid2-s2.0-85010504041-
dc.identifier.wosid000396016200008-
dc.identifier.bibliographicCitationJOURNAL OF COMMUNICATIONS AND NETWORKS, v.18, no.6, pp.948 - 961-
dc.relation.isPartOfJOURNAL OF COMMUNICATIONS AND NETWORKS-
dc.citation.titleJOURNAL OF COMMUNICATIONS AND NETWORKS-
dc.citation.volume18-
dc.citation.number6-
dc.citation.startPage948-
dc.citation.endPage961-
dc.type.rimsART-
dc.type.docTypeArticle-
dc.identifier.kciidART002189695-
dc.description.journalClass1-
dc.description.journalRegisteredClassscie-
dc.description.journalRegisteredClassscopus-
dc.description.journalRegisteredClasskci-
dc.relation.journalResearchAreaComputer Science-
dc.relation.journalResearchAreaTelecommunications-
dc.relation.journalWebOfScienceCategoryComputer Science, Information Systems-
dc.relation.journalWebOfScienceCategoryTelecommunications-
dc.subject.keywordPlusPACKET MARKING-
dc.subject.keywordPlusDDOS-
dc.subject.keywordPlusDEFENSE-
dc.subject.keywordAuthorDDoS attacks-
dc.subject.keywordAuthorInternet protocol (IP) spoofing prevention-
dc.subject.keywordAuthornetwork security-
dc.subject.keywordAuthorpacket filtering-
dc.subject.keywordAuthorpacket marking-
Files in This Item
There are no files associated with this item.
Appears in
Collections
Graduate School > Department of Computer Science and Engineering > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Lee, Hee jo photo

Lee, Hee jo
컴퓨터학과
Read more

Altmetrics

Total Views & Downloads

BROWSE