Methods of Defense DoS Attack by Traffic Metering and Controlling Technique in a Router

트래픽 제어 기법을 이용한 라우터에서의 서비스 거부 공격 방어 기법

  • 이호균 (한국전자통신연구원 보안운영체제연구팀) ;
  • 김정녀 (한국전자통신연구원 보안운영체제연구팀)
  • Published : 2003.11.14

Abstract

As the Distributed Denial of Service attack technique is getting smarter, defense method have been developed by various means. Existing defense method baseds on detection technique is not effective to DDoS attack. Because it depend on rule set that is used to detect attack and DDoS attack pattern has become very similar to real traffic pattern. So the rule set is not efficient method to find DDoS attack. To solve this problem, DDoS defense mechanism based on QoS technique has been suggested. In this paper, we summarize existing DDoS defense mechanism and focus on method based on QoS, and introduce a new DDoS defense framework.

Keywords