A Novel Protocol for IP Traceback to Detect DDoS Attack

Yogesh Kumar Meena, Aditya Trivedi · 2012

Distributed Denial of Service (DDoS) attacks continue to pose higher threats to the internet. There are so many protocols designed to trace the attacker‟s address. We want to trace back attack source (i.e., “IP addresses”), we need to examine the tradeoff between different existing IP Trace back techniques. We developed a Novel protocol to trace the IP address of DDoS attack. The novel protocol is designed by using response 1, Nonce of secure- neighbor as the parameters. We developed a sample network model. We simulate the network model by applying secure-neighbor protocol in Qualnet. Through secureneighbor, we retrieve the basic parameter value (Response 1, Nonce) and apply the decryption function on Nonce and value of neighbor-timeout to find the attackers IP address. We studied different internet topologies and aspect of DDoS attacks, used internet power low for the simulation of the internet. source to reduce waste of network resources and to find the attackers ‟ identities. The DoS attacks can be classified into two main categories: (i) Flood attacks (ii) Logic or software attacks. In Fig. 1, we have shown the simple architecture of Distributed Denial of Service (DoS) attack model.

Read the paper · More papers on PaperTik