期刊名称:International Journal of Soft Computing & Engineering
电子版ISSN:2231-2307
出版年度:2013
卷号:3
期号:1
页码:319-323
出版社:International Journal of Soft Computing & Engineering
摘要:The Distributed Denial of service (DDoS) attacks, over a past few years are found to be a disaster to the Internet. A flooding-based attack attacks the victim machine by sending an excessive amount of illegitimate traffic to it. The defence mechanisms existing before are unable to prevent the systems from these attacks, since it is very difficult to trace the spoofed packets and distinguished between the legitimate and illegitimate attack traffic. Flooding-based DDoS attacks use agents to send the traffic and sometimes prefer Reflectors in order to forward the traffic to the target, thereby making it impossible to be detected. So, this paper will propose a defence mechanism pronounced as Hop-based DDoS defence procedure. This mechanism will comprise of three components: detection of illegitimate packets, IP traceback of the illegitimate packets and the traffic control. This framework shows high performance in defending against the flooding-based attacks.