Proposal for and Evaluation of Improved Method of Hash-Based IP Traceback System
俊文 甲斐, Akira Hashiguchi, Hiroshige Nakatani · 2009
The amount of damage caused by illegal access to networks is increasing with the spread of the Internet. In particular, DoS (Denial of Service) and DDoS (Distributed DoS) attacks with falsified sender addresses can cause systems to stop and this may have a serious impact on society. Various types of IP traceback techniques have been developed and proposed as ways for detecting attackers. We have researched and developed effective IP traceback system for practical use building on existing systems. In this paper, we propose an improved type of the hash based IP traceback method. We have clarified the relationship between the amount of memory and false detection rate and have shown that the false detection rate is decreased in our hash traceback method. We have also tested it in a real network environment.