In this paper we discuss techniques to prevent distributed denial of service (DDoS) attacks within the ISP domain and extend the scheme to prevent the attack in multiple ISP domains. With a new packet marking technique and agent design, our model is able to identify the approximate source of attack with a single packet and has many features to minimise DDoS attacks.
Published in:
Integrated Network Management, 2003. IFIP/IEEE Eighth International Symposium on
Date of Conference: 24-28 March 2003