A Novel IP Traceback Scheme to Detect DDoS
Zhantao Deng, Jin Ping Cao, Jin He, Sheng Li · International Conference on Instrumentation and Measurement, Computer, Communication and Control · 2013
Distributed Denial of Service (DDoS) attacks continue to pose higher threats to the Internet. There are so many protocols designed to trace the attacker's address. We want to trace back attack source (i.e., addresses), we need to examine the tradeoff between different existing IP Trace back techniques. In this paper, we proposes a new type of IP trace back scheme, through recording TTL of the IP header to get the attack path. When the algorithm is in processing, you do not need to generate additional packages, so attacker could not detect the trace back happened. The scheme can be applied in at any strength of DDoS attack, solves the problem of traditional PPM algorithm failed in high strength DDoS attack, also improves the efficiency of trace back. Compared with the other scheme, this scheme is simple, efficiency and robustness. So this scheme can effectively resolve the reconstruction problem.