Non-repeatedly mark model based probabilistic packet marking for IP traceback

Dongqing Xie · Jisuanji yingyong yanjiu · 2009

The existing traditional countermeasures in defending against distributed denial-of-service(DDoS) attacks,such as firewall and intrusion detection system(IDS),can not do well only by passive defense policy.The essay pointed out a new IP traceback model based on probabilistic packet marking,this model inherited the advantages of AMS,but it did not need the assumptions of having upstream topology by victim.The new algorithm did not mark the packet of having edge message again,it was much faster in convergence time and more stable,and had less influence by marking probability and the length by routing.

Read the paper · More papers on PaperTik