Abstract
IP traceback or identifying an attacker is an important step for post analysis of denial of service (DoS) attacks. In this work, we present techniques to traceback in networks with dynamic topology. We consider network scenarios where edges/nodes may get added or deleted in the attack path during the process of traceback. Due to the alteration in the attack path, the standard traceback procedures proposed in literature fail to construct the attack path. An exact algorithm, based on the branch and bound technique is proposed which guarantees to completely determine the attack path. An approximation of this algorithm is also presented which is shown to have a less computational complexity but introduces false positives.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Similar content being viewed by others
References
Shawahna, A., Abu-Amara, M., Mahmoud, A., Osais, Y.E.: EDoS-ADS: an enhanced mitigation technique against economic denial of sustainability (EDoS) attacks. IEEE Trans. Cloud Comput. 1 (2018). https://doi.org/10.1109/TCC.2018.2805907
Yan, Q., Yu, F.R., Gong, Q., Li, J.: Software-defined networking (SDN) and distributed denial of service (DDoS) attacks in cloud computing environments: a survey, some research issues, and challenges. IEEE Commun. Surv. Tutor. 18(1), 602–622 (2016)
Savage, S., Wetherall, D., Karlin, A., Anderson, T.: Network support for IP traceback. IEEE/ACM Trans. Netw. 9(3), 226–237 (2001). https://doi.org/10.1109/90.929847
Paxson, V.: An analysis of using reflectors for distributed denial-of-service attacks. SIGCOMM Comput. Commun. Rev. 31(3), 38–47 (2001). https://doi.org/10.1145/505659.505664
Snoeren, A.C., et al.: Single-packet IP traceback. IEEE/ACM Trans. Netw. 10(6), 721–734 (2002)
Saurabh, S., Sairam, A.S.: ICMP based IP traceback with negligible overhead for highly distributed reflector attack using bloom filters. Comput. Commun. 42, 60–69 (2014). https://doi.org/10.1016/j.comcom.2014.01.003
Sairam, A.S., Roy, S., Sahay, R.: Coloring networks for attacker identification and response. Secur. Commun. Netw. 8(5), 751–768 (2015). https://doi.org/10.1002/sec.1022
Rayanchu, S.K., Barua, G.: Tracing attackers with deterministic edge router marking (DERM). In: Ghosh, R.K., Mohanty, H. (eds.) ICDCIT 2004. LNCS, vol. 3347, pp. 400–409. Springer, Heidelberg (2004). https://doi.org/10.1007/978-3-540-30555-2_47
Thing, V.L.L., Lee, H.C.J.: IP traceback for wireless ad-hoc networks. In: IEEE 60th Vehicular Technology Conference, VTC2004-Fall, vol. 5, pp. 3286–3290 (2004)
Dean, D., Franklin, M.K., Stubblefield, A.: An algebraic approach to IP traceback. ACM Trans. Inf. Syst. Secur. 5(2), 119–137 (2002). https://doi.org/10.1145/505586.505588
Das, A., Agrawal, S., Vishwanath, S.: On algebraic traceback in dynamic networks. In: IEEE International Symposium on Information Theory, pp. 1903–1907 (2010)
Mitten, L.G.: Branch-and-bound methods: general formulation and properties. Oper. Res. 18(1), 24–34 (1970)
Buckley, F., Harary, F.: Distance in Graphs. Addison-Wesley Publishing, Redwood City (1990)
Gallai, T.: On directed graphs and circuits. In: Theory of Graphs (Proceedings of the Colloquium Tihany 1966), pp. 115–118 (1967)
Roy, B.: Nombre chromatique et plus longs chemins d’un graphe. R.I.R.O. 1(5), 129–132 (1967). https://doi.org/10.1051/m2an/1967010501291
Hasse, M.: Zur algebraischen begrndung der graphentheorie. i. Mathematische Nachrichten 28(56), 275–290. https://doi.org/10.1002/mana.19650280503
Vitaver, L.: Determination of minimal coloring of vertices of a graph by means of Boolean powers of the incidence matrix. Dokl. Akad. Nauk. SSSR 147, 758–759 (1962)
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2019 Springer Nature Singapore Pte Ltd.
About this paper
Cite this paper
Roy, S., Chawla, H., Sairam, A.S. (2019). IP Traceback in Dynamic Networks. In: Nandi, S., Jinwala, D., Singh, V., Laxmi, V., Gaur, M., Faruki, P. (eds) Security and Privacy. ISEA-ISAP 2019. Communications in Computer and Information Science, vol 939. Springer, Singapore. https://doi.org/10.1007/978-981-13-7561-3_12
Download citation
DOI: https://doi.org/10.1007/978-981-13-7561-3_12
Published:
Publisher Name: Springer, Singapore
Print ISBN: 978-981-13-7560-6
Online ISBN: 978-981-13-7561-3
eBook Packages: Computer ScienceComputer Science (R0)