透過您的圖書館登入
IP:3.137.161.222
  • 學位論文

以群組為基礎之路由器位址記錄

Group Based Router IP Logging

指導教授 : 葉慶隆 嚴威
若您是本文的作者,可授權文章由華藝線上圖書館中協助推廣。

摘要


本論文提出利用分組為基礎路由器的位址記錄技術,此技術是網路位址追溯技術的一種,可以追溯阻斷服務攻擊的攻擊者。在我們所提出的新技術可以減少路由器記憶體及處理器的需求,可以更有效率的使用路由器的運算資源。現存封包記錄機制是將封包的資訊儲存在路由器中的記憶體中。而我們所提出的封包記錄機制是利用將路由器分組的方法,使多數的路由器無須儲存資訊在本身的記憶體內。換而言之,在我們提出的機制中,上游的路由器透過封包的傳送,可以使下游路由器記錄其上游路由器的資訊。並利用路由器分組的方式,將資訊儲存在每一組的領導路由器中。此外透過編碼機制減少路由器所需要儲存的資訊量。

並列摘要


In this paper we propose the Group Based Router IP Logging scheme which can trace back the attacker of the Denial of Service. One of the advantages of the scheme is to reduce required memory and CPU time in the router for traceback to the true source. The main difference of the novel scheme and existing logging schemes is in the way they store information in the router. In existing logging schemes, information of the packet is stored in memory of the router. However, information of the upstream router is placed in the packet and is stored in the downstream router in our novel scheme. To save memory space, the router in the path is divided into groups and logging information is stored in the group leader. So, this scheme requires only a fraction of the routers to participate in the logging activities. Moreover, this scheme adds an encoding mechanism to reduce the required memory in the router.

參考文獻


[6]. A. Belenky and N. Ansari, “On IP traceback,” IEEE Communications Magazine, vol.41, no.7, Jul. 2003.
[7]. A. Belenky and N. Ansari, “IP Traceback with Deterministic Packet Marking,” IEEE COMMUNICATIONS LETTERS, vol.7, no. 4, Apr. 2003.
[8]. A. Belenky and N. Ansari, “Tracing Multiple Attackers with Deterministic Packet Marking (DPM),” in Proc. IEEE Pacific Rim Conference on Communications, Computers and signal Processing, Vol. 1, pp. 49–52, Aug. 2003.
[9]. B. Al-Duwairi, M. Govindarasu, "Novel Hybrid Schemes Employing Packet Marking and Logging for IP Traceback", IEEE Transactions on Parallel and Distributed System, vol.17, no.5, May 2006
[10]. B. H. Bloom, "Space/Time trade-offs in hash coding with allowable errors," Communications of the ACM, vol.13, no.7, Jul. 1970.

延伸閱讀