Beruflich Dokumente
Kultur Dokumente
D e te rm in istic
P a ck e t M a rk in g
An IP Trace back System
to Find
the Real Source of
Attacks
AIM :
Internet Protocol ( IP ) trace back
is the enabling technology to
control Internet crime .
About the project
vW e p re se n t a n o ve la n d p ra ctica lIP tra ce b a ck
syste m ca lle d Fle xib le D e te rm in istic Pa cke t
M a rkin g ( F D P M ).
v
vFDPM provides a defense system with the ability
to find out the real sources of attacking
packets that traverse through the network.
v
vit also adaptively changes its marking rate
according to the load of the participating
router by a flexible flow-based marking scheme.
vFDPM requires a moderately small number of
packets to complete the Trace back process.
v
vFDPM can trace a large number of sources in
one trace back process with low false
positive rates.
v
vThe built-in overload prevention mechanism
makes this system capable of achieving a
good trace back result even when the router
is heavily loaded.
v
System Analysis
E X IS T IN G S Y S T E M :
Disadvantages:
FDPM Algorithm :
We carry out simulations on the FDPM
algorithm and show that the FDPM algorithm
can guarantee the correctness of the
constructed attack graph.
Advantages: