Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing
Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing
复制标题
DOI:
10.17487/rfc2267
复制
发表时间:
1998
期刊:
影响因子:
--
通讯作者:
Paul Ferguson;D. Senie
中科院分区:
文献类型:
--
作者:
Paul Ferguson;D. Senie
Recent occurrences of various Denial of Service (DoS) attacks which have employed forged source addresses have proven to be a troublesome issue for Internet Service Providers and the Internet community overall. This paper discusses a simple, effective, and straightforward method for using ingress traffic filtering to prohibit DoS attacks which use forged IP addresses to be propagated from 'behind' an Internet Service Provider's (ISP) aggregation point.