2020International journal of advance research and innovative ideas in educationRequires access

AN IP TRACEBACK SCHEME FOR SECURING NETWORKS FROM IP SPOOFERS

Selva Kumar.A, Siva Sravani.K

Open publisher page 0 citations

Abstract

In computer networking, IP address spoofing or IP spoofing is the creation of Internet Protocol (IP) packets with a forged source IP address, with the purpose of concealing the identity of the sender or impersonating another computing system. The basic protocol for sending data in the Internet network and many other networks is the Internet Protocol (IP). The header of each IP packet contains the numerical source and destination address of the packet. The source address is normally the address that the packet was sent from. By forging the header so it contains a different address, an attacker can make it appear that the packet was sent by a different machine. So that the IP Spoofing comes into place. Cloud services offer better options for practical deployment of an IP traceback system. We first present novel cloud-based traceback architecture. We have proposed a novel solution, named Man in the Middle Attack () to avoid the challenges in operation. To capture the origins of IP spoofing traffic is of great importance. As long as the real locations of spoofers are not disclosed, they cannot be deterred from launching further attacks. Even just approaching the spoofers, for example, determining the ASes or networks they reside in, attackers can be located in a smaller area, and filters can be placed closer to the attacker before attacking traffic get aggregated. The last but not the least, identifying the origins of spoofing traffic can help build a reputation system for ASes, which would be helpful to push the corresponding ISPs to verify IP source address. The proposed solution ensures that the entity requesting for traceback service is an actual recipient of the packets to be traced.

About this research paper

What this paper is about

In computer networking, IP address spoofing or IP spoofing is the creation of Internet Protocol (IP) packets with a forged source IP address, with the purpose of concealing the identity of the sender or impersonating another computing system. The basic protocol for sending data in the Internet network and many other networks is the Internet Protocol (IP). The header of each IP packet contains the numerical source and destination address of the packet. The source address is normally the address that the packet was sent from. By forging the header so it contains a different address, an attacker can make it appear that the packet was sent by a different machine. So that the IP Spoofing comes into place. Cloud services offer better options for practical deployment of an IP traceback system. We first present novel cloud-based traceback architecture. We have proposed a novel solution, named Man in the Middle Attack () to avoid the challenges in operation. To capture the origins of IP spoofing traffic is of great importance. As long as the real locations of spoofers are not disclosed, they cannot be deterred from launching further attacks. Even just approaching the spoofers, for example, determining the ASes or networks they reside in, attackers can be located in a smaller area, and filters can be placed closer to the attacker before attacking traffic get aggregated. The last but not the least, identifying the origins of spoofing traffic can help build a reputation system for ASes, which would be helpful to push the corresponding ISPs to verify IP source address. The proposed solution ensures that the entity requesting for traceback service is an actual recipient of the packets to be traced.

Why it matters

A significance statement is not available in the OpenAlex record.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

In computer networking, IP address spoofing or IP spoofing is the creation of Internet Protocol (IP) packets with a forged source IP address, with the purpose of concealing the identity of the sender or impersonating another computing system. The basic protocol for sending data in the Internet network and many other networks is the Internet Protocol (IP). The header of each IP packet contains the numerical source and destination address of the packet. The source address is normally the address that the packet was sent from. By forging the header so it contains a different address, an attacker can make it appear that the packet was sent by a different machine. So that the IP Spoofing comes into place. Cloud services offer better options for practical deployment of an IP traceback system. We first present novel cloud-based traceback architecture. We have proposed a novel solution, named Man in the Middle Attack () to avoid the challenges in operation. To capture the origins of IP spoofing traffic is of great importance. As long as the real locations of spoofers are not disclosed, they cannot be deterred from launching further attacks. Even just approaching the spoofers, for example, determining the ASes or networks they reside in, attackers can be located in a smaller area, and filters can be placed closer to the attacker before attacking traffic get aggregated. The last but not the least, identifying the origins of spoofing traffic can help build a reputation system for ASes, which would be helpful to push the corresponding ISPs to verify IP source address. The proposed solution ensures that the entity requesting for traceback service is an actual recipient of the packets to be traced.

Key concepts: IP address spoofing, Computer network, IP traceback, Loose Source Routing, Spoofing attack, Computer science, IP tunnel, Network packet

Related papers

Back to paper searchBrowse research topicsOriginal source
AN IP TRACEBACK SCHEME FOR SECURING NETWORKS FROM IP SPOOFERS — Research Paper | ScholarLens