Beta
211300

HDSL: A Hybrid Distributed Single-packet Low-storage IP Traceback Framework.

Article

Last updated: 04 Jan 2025

Subjects

-

Tags

Computer Engineering and Systems

Abstract

Many problems with IP protocol design facilitate the mission of the Distributed Denial of Service (DDoS) attackers. This paper proposes a new Hybrid Distributed Single-packet Low-storage (HDSL) IP traceback framework, which consists of three enhanced DDoS defense mechanisms. The first mechanism is a Deterministic Packet Marking (DPM) to compose a unique path identifier for validating network paths. The second is a low-storage space packet logging to locally log routed packets information which is used later for locating the source of even a single attacking packet. The third, pushes the aggregates of the attacking packets upstream one or more levels to alleviate the congestion occurred at or near the target to legitimate packets dropping. Three algorithms are developed for this purpose. An Intrusion Detection System (IDS) is also used to administrate the defense modules of the framework, and managing network information. Experimental results show that the traceback performance is improved from many aspects. First, the percentage of false edges returned is decreased as a result of the proposed accurate low collision path identifiers. Also, the required logging space is reduced to more than 70% of other mechanisms. Finally, the ratio of the legitimate packets dropped due to attacking packets congestion aggregates potentially decreased for deploying the pushback principle.

DOI

10.21608/bfemu.2021.211300

Keywords

DDoS attacks, IP traceback, packet marking, packet logging, storage overhead, pushback

Authors

First Name

Magdy

Last Name

M. Fadel

MiddleName

-

Affiliation

Chief engineer of computers and systems, Faculty of Engineering, Mansoura University

Email

-

City

Mansoura

Orcid

-

Volume

46

Article Issue

4

Related Issue

28611

Issue Date

2021-12-01

Receive Date

2021-10-04

Publish Date

2021-12-01

Page Start

75

Page End

89

Print ISSN

1110-0923

Online ISSN

2735-4202

Link

https://bfemu.journals.ekb.eg/article_211300.html

Detail API

https://bfemu.journals.ekb.eg/service?article_code=211300

Order

29

Type

Research Studies

Type Code

1,205

Publication Type

Journal

Publication Title

MEJ. Mansoura Engineering Journal

Publication Link

https://bfemu.journals.ekb.eg/

MainTitle

HDSL: A Hybrid Distributed Single-packet Low-storage IP Traceback Framework.

Details

Type

Article

Created At

22 Jan 2023