Chained puzzles: a novel framework for IP-layer client puzzles
McNevin, T.J.; Jung-Min Park; Marchany, R.
Wireless Networks, Communications and Mobile Computing, 2005 International Conference on
Volume 1, Issue , 13-16 June 2005 Page(s): 298 - 303 vol.1
Digital Object Identifier 10.1109/WIRLES.2005.1549426
Summary: Large-scale, high-profile distributed denial-of-service (DDoS) attacks have become common recurring events that increasingly threaten the proper functioning and continual success of the Internet. Recently, client puzzle protocols have been proposed as a mitigation technique for DoS attacks. These protocols require a client to solve a cryptographic "puzzle" before it receives any service from a remote server. By embedding the client puzzle mechanism into the lowest layer of the Internet protocol stack that is vulnerable against network DoS attacks - the network layer - we can mitigate the most virulent form of DoS attacks: flooding-based DDoS attacks. This paper describes the framework of a novel IP-layer client puzzle protocol that we call chained puzzles. We describe the framework in detail and show its effectiveness using simulation results.
View citation and abstract |