A restrictive model (RM) for detection and prevention of INVITE flooding attack

Muhammad Asif Raza, Asim-ur-Rehman Khan, Muhammad Raza · 2013

The denial of service (DOS) attack is a known problem in computer networks. This paper reviews DOS attack at the Application layer using session initiation protocol (SIP). Most of the existing solutions are based on adaptive threshold, cumulative sum, and Hellinger distance (HD). The HD uses number of INVITE messages for prediction of the possible flooding attack. A limitation of these approaches is that they all need training phase before actually being tested in the real situation. The proposed method proposes a completely different solution where transport layer protocol based on UDP is used to block the stream of undesired packets. This approach is novel and found to be working in various situations. The algorithm is rigorously tested using the network simulator NS2.

Read the paper · More papers on PaperTik