Enhanced IP spoofing defense through clustered interdomain packet filtering strategy

In current Internet communication world, validity of the source of Internet Protocol packet is an important issue. The problems of IP spoofing alarm legitimate users of the Internet. Various spoofing defenses techniques and mechanisms are proposed by researchers, among which, Interdomain Packet Filt...

Full description

Saved in:
Bibliographic Details
Main Author: Lee, Soon
Format: Thesis
Language:English
English
Published: 2011
Online Access:http://psasir.upm.edu.my/id/eprint/27379/1/FSKTM%202011%2018R.pdf
http://psasir.upm.edu.my/id/eprint/27379/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:In current Internet communication world, validity of the source of Internet Protocol packet is an important issue. The problems of IP spoofing alarm legitimate users of the Internet. Various spoofing defenses techniques and mechanisms are proposed by researchers, among which, Interdomain Packet Filter (IDPF) architecture proposed by Duan, et al. is promising. Based on the information from Border Gateway Protocol (BGP), IDPF is constructed. Filtering nodes are chosen based on vertex cover of the graph. This thesis presents a clustered strategy for selection of filtering nodes for IDPF architecture. Clusters of filtering nodes are chosen from the Autonomous System with highest number degree. Through analysis and simulation, the effectiveness of IDPF with Clustered Filtering was measured. The work presented here has profound implications for future studies of IP spoofing defense under IDPF.