• Title/Summary/Keyword: Traffic Control Mechanism

Search Result 300, Processing Time 0.037 seconds

Advanced ICMP Traceback Mechanism Against DDoS Attack in Router (DDoS 공격에 대한 개선된 라우터 기반 ICMP Traceback iT법)

  • 이형우
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.13 no.6
    • /
    • pp.173-186
    • /
    • 2003
  • Distributed Denial-of-Service(DDoS) attack prevent users from accessing services on the target network by spoofing its origin source address with a large volume of traffic. The objective of IP Traceback is to determine the real attack sources, as well as the full path taken by the attack packets. Existing IP Traceback methods can be categorized as proactive or reactive dating. Proactive tracing(such as packet marking and messaging) prepares information for tracing when packets are in transit. Reactive tracing starts tracing after an attack is detected. In this paper, we propose a 'advanced ICW Traceback' mechanism, which is based on the modified pushback system with secure router mechanism. Proposed mechanism can detect and control DDoS traffic on router and can generate ICMP Traceback message for reconstructing origin attack source, by which we can diminish network overload and enhance Traceback performance.

Performance Evaluation of Buffer Management Schemes for Implementing ATM Cell Reassembly Mechanism

  • Park, Gwang-Man;Kang, Sung-Yeol;Lie, Chang-Hoon
    • Journal of the Korean Operations Research and Management Science Society
    • /
    • v.22 no.2
    • /
    • pp.139-151
    • /
    • 1997
  • An ATM switching system may be designed so that communications between processors of its control part can be performed via its switching network rather than a separate inter-processor communications (IPC) network. In such a system, there should be interfaces to convent IPC traffic from message format to cell format and vice versa, that is, mechanisms to perform the SAR (Segmentation And Reassembly) sublayer functions. In this paper, we concern the cell reassembly mechanism among them, mainly focussed on buffer management schemes. We consider a few alternatives to implement cell reassembly function block, namely, separated buffering, reserved buffering and shared buffering in this paper. In case of separated and reserved buffering, we employ a continuous time Markov chain for the performance evaluation of cell reassembly mechanism, judicially defining the states of the mechanism. Performance measures such as measage loss probability, mean number of message queued in buffer and average reassembly delay are obtianed in closed forms. In case of shared buffering, we compare the alternatives for implementing cell reassembly function block using simulation because it is almost impossible to analyze the mechanism of shared buffering by analytical modeling. Some illustrations are given for the performance analysis of the alternatives to implement cell reassembly function block.

  • PDF

Novel Home Network QoS Mechanism for the High-Definition IPTV Service based on Multicast Traffic (멀티캐스트기반 고화질 IPTV 서비스를 위한 홈네트워크 품질보장 기법)

  • Park, Minho;Jeong, Yeonjoon;Paik, Euihyoun;Park, Kwangroh
    • IEMEK Journal of Embedded Systems and Applications
    • /
    • v.2 no.1
    • /
    • pp.17-23
    • /
    • 2007
  • The home network has been revitalized due to the emergence of the high-speed broadband network and explosive increases of the home network services. Especially multicast based high-definition (HD) IPTV service is on high demand from both Internet service provider (ISP) and users. In order to provide high quality HD IPTV service without packet loss and delay, the ISP utilizes various network QoS mechanisms. Due to the misleading fact, that the home gateway is considered as an end terminal in terms of the ISP's viewpoint, the ISPs can not guarantee the end-to-end QoS within the scope of the current home network architecture. Therefore, an independent QoS guaranteed mechanism should be considered within the home network domain. As the home gateway manages both private home and public access network within the home network, we propose and implement a novel QoS mechanism for the multicast based HD IPTV service over the home gateway. In order to provide QoS guaranteed HD IPTV service, the proposed mechanism classifies the packets, manages home network bandwidth resources, and executes call admission control using the channel join message. Also, we utilize layer 2 multicast packet forwarding scheme to improve the overall performance of the home network services. Through the experiments of implementing the multicast based HD IPTV services, we will verify the efficiency of the proposed mechanism.

  • PDF

Implementation of Absolute Delay Differentiation Scheme in Next-Generation Networks (차세대 네트워크에서의 절대적 지연 차별화 기능 구현)

  • Paik, Jung-Hoon;Kim, Dae-Ub;Joo, Bheom-Soon
    • 전자공학회논문지 IE
    • /
    • v.45 no.1
    • /
    • pp.15-23
    • /
    • 2008
  • In this paper, an algorithm, that provisions absolute differentiation of packet delays is proposed, simulated, and implemented with VHDL on XPC 860 CPU based test board with an objective for enhancing quality of service (QoS) in future packet networks. It features a scheme that compensates the deviation for prediction on the traffic to be arrived continuously. It predicts the traffic to be arrived at the beginning of a time slot and measures the actual arrived traffic at the end of the time slot and derives the difference between them. The deviation is utilized to the delay control operation for the next time slot to offset it. As it compensates the prediction error continuously, it shows superior adaptability to the bursty traffic as well as the exponential traffic. It is demonstrated through both simulation and the real traffic test on the board that the algorithm meets the quantitative delay bounds and shows superiority to the traffic fluctuation in comparison with the conventional non-adaptive mechanism.

Adaptive Input Traffic Prediction Scheme for Proportional Delay Differentiation in Next-Generation Networks (차세대 네트워크에서 상대적 지연 차별화를 위한 적응형 입력 트래픽 예측 방식)

  • Paik, Jung-Hoon
    • Convergence Security Journal
    • /
    • v.7 no.2
    • /
    • pp.17-25
    • /
    • 2007
  • In this paper, an algorithm that provisions proportional differentiation of packet delays is proposed with an objective for enhancing quality of service (QoS) in future packet networks. It features an adaptive scheme that adjusts the target delay every time slot to compensate the deviation from the target delay which is caused by the prediction error on the traffic to be arrived in the next time slot. It predicts the traffic to be arrived at the beginning of a time slot and measures the actual arrived traffic at the end of the time slot. The difference between them is utilized to the delay control operation for the next time slot to offset it. As it compensates the prediction error continuously, it shows superior adaptability to the bursty traffic as well as the exponential rate traffic. It is demonstrated through simulations that the algorithm meets the quantitative delay bounds and shows superiority to the traffic fluctuation in comparison with the conventional non-adaptive mechanism. The algorithm is implemented with VHDL on a Xilinx Spartan XC3S1500 FPGA and the performance is verified under the test board based on the XPC860P CPU.

  • PDF

Evaluation of Traffic Control Mechanism with QoS in FMIPv6 (FMIPv6에서 QoS를 고려한 트래픽 제어 메커니즘의 평가)

  • 진금식;김재영;정선화;박석천
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2004.04a
    • /
    • pp.499-501
    • /
    • 2004
  • 현재 IPv6에서 이동 통신에 끊김 없는 서비스를 제공하기 위해 Mobile IPv6에 관한 많은 연구가 이루어지고 있다. FMIPv6는 핸드오버 절차를 간소화시켜서 빠른 속도의 핸드오버와 데이터 전송이 가능하며 SIP나 VoIP 및 무선 인터넷 동영상 서비스와 같은 경우에 많이 사용될 것으로 예상되지만 패킷 손실의 문제점을 지니고 있다. 본 논문은 FMIPv6에서 핸드오버시 발생하는 패킷 손실을 줄이기 위하여 라우터에서 사용하는 여러 패킷 관리 스케줄링 기법 중 WFQ기법을 사용한 트래픽 관리 메커니즘을 설계하고 평가하였다.

  • PDF

Design of Traffic Control Mechanism with QoS in FMIPv6 (FMIPv6에서 QoS를 고려한 트래픽 제어 메커니즘의 설계)

  • 김재영;김형국;최준욱;윤희준;정선화;박석천
    • Proceedings of the Korea Multimedia Society Conference
    • /
    • 2003.11b
    • /
    • pp.786-789
    • /
    • 2003
  • 현재 IPv6에서 이동 통신에 끊김 없는 서비스를 제공하기 위해 Mobile IPv6에 관한 많은 연구가 이루어지고 있다. FMIPv6는 핸드오버 절차를 간소화시켜서 빠른 속도의 핸드오버와 데이터전송이 가능하며 SIP나 VoIP 및 무선 인터넷 동영상 서비스와 같은 경우에 많이 사용될 것으로 예상되지만 패킷 손실의 문제점을 지니고 있다. 본 논문은 FMIPv6에서 핸드오버시 발생하는 패킷 손실을 줄이기 위하여 라우터에서 사용하는 여러 패킷 관리 스케줄링 기법 중 WFQ기법을 사용한 트래픽 관리 메커니즘을 설계하였다.

  • PDF

Sub-Optimal Route Planning by Immuno-Agents

  • Takakazu, Ishimatsu;Chan, Tony
    • 제어로봇시스템학회:학술대회논문집
    • /
    • 2001.10a
    • /
    • pp.89.6-89
    • /
    • 2001
  • In Vehicle Information and Communication System (VICS), which is an active field of Intelligent Transport System (ITS), information of traffic congestion is sent to each vehicle at real time. However, a centralized navigation system is not realistic to guide millions of vehicles in a megalopolis. Autonomous distributed systems should be more flexible and scalable, and also have a chance to focus on each vehicle´s demand. This paper proposes a sub-optimal route planning mechanism of vehicles in urban areas using the non-network type immune system. Simulation is carried out using a cellular automaton model. This system announces a sub-optimal route to drivers in real time using VICS.

  • PDF

Estimation and Prediction-Based Connection Admission Control in Broadband Satellite Systems

  • Jang, Yeong-Min
    • ETRI Journal
    • /
    • v.22 no.4
    • /
    • pp.40-50
    • /
    • 2000
  • We apply a "sliding-window" Maximum Likelihood(ML) estimator to estimate traffic parameters On-Off source and develop a method for estimating stochastic predicted individual cell arrival rates. Based on these results, we propose a simple Connection Admission Control(CAC)scheme for delay sensitive services in broadband onboard packet switching satellite systems. The algorithms are motivated by the limited onboard satellite buffer, the large propagation delay, and low computational capabilities inherent in satellite communication systems. We develop an algorithm using the predicted individual cell loss ratio instead of using steady state cell loss ratios. We demonstrate the CAC benefits of this approach over using steady state cell loss ratios as well as predicted total cell loss ratios. We also derive the predictive saturation probability and the predictive cell loss ratio and use them to control the total number of connections. Predictive congestion control mechanisms allow a satellite network to operate in the optimum region of low delay and high throughput. This is different from the traditional reactive congestion control mechanism that allows the network to recover from the congested state. Numerical and simulation results obtained suggest that the proposed predictive scheme is a promising approach for real time CAC.

  • PDF

Train Operation Control by Radio Based Communication (무선 통신을 이용한 열차운행 제어 방식에 대한 연구)

  • Lim jae-sik;Kim chi-jo;Kang man-sik
    • Proceedings of the KSR Conference
    • /
    • 2003.10c
    • /
    • pp.216-222
    • /
    • 2003
  • Train control by radio based communication is one of the interesting new fields in train signal. The radio based control has more benefits, low headway and low construction and maintenance cost, than conventional control. In this paper, a safe and efficient train operation is introduced. Triple radio communications, train to train, train to station, and train to central traffic control, are used to increase the reliability. One of these communications channels has a fault; the others can take the functions of it. Absolute position of a train is transmitted to station via radio communication. In the station, the interlocking mechanism should be activated as the legacy.

  • PDF