Research Paper | Computer Science & Engineering | India | Volume 3 Issue 9, September 2014
Filtering of Malicious Traffic Based on Optimal Source
Pikkili Mahendra, K. Raghavendra Rao
We have considered the problem of blocking malicious traffic on the Internet via optimal source-based filtering. In particular, we can consider filtering via access control lists (ACLs): These are already available at the routers, but they are a scarce resource because they are stored in the expensive ternary content addressable memory (TCAM). Aggregation (by filtering source prefixes instead of individual IP addresses) helps the less number of filters, but also at the cost of blocking legitimate traffic originating from the filtered prefixes. We have show how to optimally choose which source prefixes to filter for a variety of realistic attack scenarios and operators policies. In each scenario, we have design optimal, yet to be computationally efficient, algorithms. Using logs from the Dshield.org, We evaluate the algorithms and demonstrate that they bring significant benefit in practice.
Keywords: Network Security, Internet, Clustering Algorithms, Filtering
Edition: Volume 3 Issue 9, September 2014
Pages: 1373 - 1376
How to Cite this Article?
Pikkili Mahendra, K. Raghavendra Rao, "Filtering of Malicious Traffic Based on Optimal Source", International Journal of Science and Research (IJSR), https://www.ijsr.net/search_index_results_paperid.php?id=SEP14412, Volume 3 Issue 9, September 2014, 1373 - 1376