One of the ways a malicious router can launch a Denial of Service (DoS) attack is by rerouting IP-packets of other destinations to the victim node. In this paper, based on the observed traffic anomalies, we propose using a Markov chain model to calculate trustworthiness of routers in order to isolate the malicious ones. Furthermore, our approach reduces the false positives by including context information, such as traffic congestion and packet corruption. By means of simulation, we validate our proposed approach in both connection-oriented (i.e., TCP) and connection-less (i.e., UDP) environments.
The different versions of the original document can be found in:
Published on 01/01/2012
Volume 2012, 2012
DOI: 10.4108/icst.collaboratecom.2011.247157
Licence: CC BY-NC-SA license
Are you one of the authors of this document?