White Papers

Analysis of a Denial of Service Attack on TCP

Overview This paper analyzes a network-based denial of service attack for IP (Internet Protocol) based networks. It is popularly called SYN flooding. It works by an attacker sending many TCP (Transmission Control Protocol) connection requests with spoofed source addresses to a victim's machine. Each request causes the targeted host to instantiate data structures out of a limited pool of resources. Once the target host's resources are exhausted, no more incoming TCP connections can be established, thus denying further legitimate access. The paper contributes a detailed analysis of the SYN flooding attack and a discussion of existing and proposed countermeasures. Furthermore, they introduce a new solution approach, explain its design, and evaluate its performance.

Download White Paper

By downloading you agree to our Terms and Conditions. These include information regarding use of your personal data.

Publisher
Purdue University
File Format
PDF
Date Published
Jun 20, 2009
Format
White Papers
Topics
Denial of Service, TCP - IP, Security Management

Similiar White Papers

The dirty dozen: preventing common application-level hack attacks

The dirty dozen: preventing common application-level hack attacks

As organizations have grown increasingly dependent on online software, the risk of malicious attacks has also become far

Publisher: IBM  |  Tags: ip, online software, software

The Top 5 Challenges to Achieving Outstanding Enterprise Security and How to Overcome Them

The Top 5 Challenges to Achieving Outstanding Enterprise Security and How to Overcome Them

As networks extend their reach, protecting them from internal and external breeches becomes a top priority. Every IT exe

Publisher: Nortel Networks  |  Tags: ip

Purdue University White Papers

High-Throughput Multicast Routing Metrics in Wireless Mesh Networks

High-Throughput Multicast Routing Metrics in Wireless Mesh Networks

The stationary nature of nodes in a mesh network has shifted the main design goal of routing protocols from maintaining

Publisher: Purdue University  |  Tags: data, network, the link, unicast

Network Architecture & Design: Virtualized Network Design for Computer Information Technology Department

Network Architecture & Design: Virtualized Network Design for Computer Information Technology Department

Technological advancements in information technology are causing universities around the globe to move away from the tra

Publisher: Purdue University

Towards Achieving the Maximum Capacity in Large Mobile Wireless Networks Under Delay Constraints

Towards Achieving the Maximum Capacity in Large Mobile Wireless Networks Under Delay Constraints

This paper explains how to achieve the maximum capacity under delay constraints for large mobile wireless networks. It d

Publisher: Purdue University  |  Tags: mobile wireless, network, wireless networks

The Fundamental Capacity-Delay Tradeoff in Large Mobile Wireless Networks

The Fundamental Capacity-Delay Tradeoff in Large Mobile Wireless Networks

The paper establishes the fundamental tradeoff between the achievable capacity and delay in large mobile wireless networ

Publisher: Purdue University  |  Tags: mobile wireless, mobility, wireless networks

Exploiting the Synergy Between Peer-to-Peer and Mobile Ad Hoc Networks

Exploiting the Synergy Between Peer-to-Peer and Mobile Ad Hoc Networks

This paper argues that there exists a synergy between peer-to-peer (p2p) overlay networks for the Internet and Mobile Ad

Publisher: Purdue University  |  Tags: p2p, peer-to-peer