DiffServ 네트워크에서 QoS를 위한 보안 기법

  • 박수영 (위덕대학교 컴퓨터멀티미디어공학부) ;
  • 전용희 (대구가톨릭대학교 컴퓨터정보통신공학부)
  • Published : 2002.08.01

Abstract

Keywords

References

  1. 전용희, 박수영, 'DiffServ를 이용한 인터넷 QoS 보장 기술', 한국통신학회지, 제 17권 9호, pp.1152-1173, 2000년 9월
  2. 전용희(편집자), 네트워크 Security & QoS, 한국통신학회지, 제 18권 9호, 2001년 9월
  3. 이동훈, 정일영, 한치문, 장종수, '인터넷에서의 라우팅 및 QoS 보안', 한국통신학회지, 제 18권 9호, pp. 1235-1246, 2001년 9월
  4. D. Moore, G. M. Voelker, and S. Savage, 'Inferring Internet denial of service activity,' in Proc. USENIX, 2001
  5. L. Garber, 'Denial of Service attacks rip the Internet,' IEEE Computer, vol. 33, 4, pp. 12-17, April 2000 https://doi.org/10.1109/MC.2000.839316
  6. G. Spafford and S. Garfinkel, Practical Unix and Internet Security, O'Reilly & Associates, Inc., second edition 1996
  7. S. Savage, D. Wetherall, A. Karlin and T. Anderson, 'Network support for IP traceback,' IEEE/ACM Transactions on Networking, vol. 9: (3), pp. 226-237, June 2001 https://doi.org/10.1109/90.929847
  8. A. Habib, S. Fahmy, S. R. Avasarala V. Prabhakar, and Bharat Bhargava, 'On detecting service violations and bandwidth theft in QoS network domains,' Tech. Report., CSD-01-22, Department of Computer Sciences, Purdue University, Dec, 2001
  9. Aaron Striegel, 'Security Issues in a Differentiated Services Internet', http://www.public.iastate.edu/~magico
  10. Zhi Fu, Network Management and Intrusion Detection For Quality Of Network Services, Ph.D. Dissertation, Computer Science Department, North Carolina State University, Raleigh, U.S.A. 2001
  11. K. Nichols, S. Blake, and D. L. Black, 'Definition of the Differentiated Services Fie1d(DS Field) in the IPv4 and IPv6 Headers', RFC 2474, IETF, Dec. 1998
  12. S. Kent and R. Atkinson, 'IP Encapsulating Security Payload(ESP)', RFC 2406, IETF, Nov. 1998
  13. S. Kent and R. Atkinson, 'IP Authentication Header', RFC 2402, IETF, Nov. 1998
  14. C. Barros, 'A proposal for ICMP traceback messages', Internet Draft http://www.research.att.com/lists/ietf-itrace/2000/09/msg00044.html. Sept. 18, 2000
  15. H. Burch and H. Cheswick, 'Tracing anonymous packets to their approximate source', in Proc. USENIX Conference, pp. 319-327, DEc. 2000
  16. A. Snoeren et al., 'Hashed based IP traceback', ACM SIGCOMM, Aug. 2001
  17. P. Ferguson and D. Senie, 'Network Ingress filtering: Defeating denial of service attacks which employ IP source address spoofing agreements performance monitoring', RFC 2827, May 2000
  18. SANS Institute, Egress filtering v0.2.,', http://www.sans.org/y2k/egress.htm. Feb. 2000
  19. K. Park and H. Lee, 'A proactive approach to distributed DoS attack prevention using route-based packetfiltering,' in Proc. ACM SIGCOMM, Aug. 2001
  20. M Mahajan et al., 'Controlling highbandwidth aggregates in the network,' Technical Report, ACIRI, Feb. 2001
  21. V. Paxon, Measurement and Analysis of End to End Internet Dynamics, Ph.D. Thesis, University of California Berkeley, Computer Science Division, 1997
  22. V. Paxon, G. Almes, J. Mahdavi, and M. Mathis, 'Framework for IP performance metrics,' IETF RFC 2330, May 1998