Implementing filtering and traceback mechanism for packet-marking IP-traceback schemes against DDoS attacks

    In this paper we present two packet marking schemes that can be used against distributed denial of service attacks. We describe the architectural details of the filtering and traceback mechanism that is deployed on the victimpsilas network and show how the components utilize the packet markings to effectively stop ongoing DDoS attacks.