BGP Traceback: Um Novo Método para Identificação de Caminhos de Ataques na Internet

Luis Felipe M. de MoraesDenilson Vedoveto Martins

This paper presents the proposal of a new method of IP Traceback that introduces the use of the Border Gateway Protocol (BGP) to trace the path of an attack in the Internet. To allow such functionality, new messages were included to the BGP. Due to the problems found in current methods of IP Traceback, modifications are proposed in the packet marking mechanism, allowing only attack packets to be marked. To guarantee the secure communication between BGP Peers, the use of security mechanisms introduced by the proposal of Secure-BGP (S-BGP) will be considered.

