Flow Anomaly Telemetry Driven by Programmable Data Plane

被引:0
|
作者
Jiang, Xinyue [1 ]
Deng, Risheng [1 ]
Zhang, Dong [2 ]
Wu, Chunming [1 ]
机构
[1] Zhejiang Univ, Coll Comp Sci & Technol, Hangzhou, Peoples R China
[2] Fuzhou Univ, Coll Math & Comp Sci, Fuzhou, Peoples R China
基金
国家重点研发计划;
关键词
INT; network measurement; DDoS attack;
D O I
10.1109/iThings-GreenCom-CPSCom-SmartData-Cybermatics53846.2021.00035
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The large-scale distributed network has exposed increasing attack surfaces to cyber attackers. In this paper, we present a refined network measurement mechanism, called DDoS Collaborative Mitigation Mechanism (DDoSCCM). Based on former achievements in the programmable network, our work aims at capturing the characters of abnormal traffic and presenting an antedating reaction, constrained by limited resources of the switching ASIC. In-band Network Telemetry (INT) technique achieves real-time monitoring of the network by utilizing the device data acquisition on the data plane. Our work helps the network operator not only to learn the status of the network but also to issue an appropriate mitigation strategy faster and more accurately. DDoSCCM aims at delegating both detection and mitigation processes to the programmable switch. Consequently, the theoretical analysis and experimental results show that DDoSCCM can meet practical requirements and have a certain application value.
引用
收藏
页码:146 / 152
页数:7
相关论文
共 50 条
  • [41] pHeavy: Predicting Heavy Flows in the Programmable Data Plane
    Zhang, Xiaoquan
    Cui, Lin
    Tso, Fung Po
    Jia, Weijia
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (04): : 4353 - 4364
  • [42] Building a Fast, Virtualized Data Plane with Programmable Hardware
    Anwer, Muhammad Bilal
    Feamster, Nick
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2010, 40 (01) : 75 - 82
  • [43] Architecting Programmable Data Plane Defenses into the Network with FastFlex
    Xing, Jiarong
    Wu, Wenqing
    Chen, Ang
    PROCEEDINGS OF THE EIGHTEENTH ACM WORKSHOP ON HOT TOPICS IN NETWORKS (HOTNETS '19), 2019, : 161 - 169
  • [44] Firebolt: Finding Bugs in Programmable Data Plane Generators
    Cao, Jiamin
    Zhou, Yu
    Sun, Chen
    He, Lin
    Xi, Zhaowei
    Liu, Ying
    PROCEEDINGS OF THE 2022 USENIX ANNUAL TECHNICAL CONFERENCE, 2022, : 819 - 834
  • [45] Programmable Data Plane Intelligence: Advances, Opportunities, and Challenges
    Liu, Wai-Xi
    Liang, Cong
    Cui, Yong
    Cai, Jun
    Luo, Jun-Ming
    IEEE NETWORK, 2023, 37 (05): : 122 - 128
  • [46] Building a Fast, Virtualized Data Plane with Programmable Hardware
    Anwer, Muhammad Bilal
    Feamster, Nick
    VISA 09, 2009, : 1 - 8
  • [47] Virtualization in Programmable Data Plane: A Survey and Open Challenges
    Han, Sol
    Jang, Seokwon
    Choi, Hongrok
    Lee, Hochan
    Pack, Sangheon
    IEEE OPEN JOURNAL OF THE COMMUNICATIONS SOCIETY, 2020, 1 : 527 - 534
  • [48] Offloading Media Traffic to Programmable Data Plane Switches
    Kfoury, Elie F.
    Crichigno, Jorge
    Bou-Harb, Elias
    ICC 2020 - 2020 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2020,
  • [49] The Programmable Data Plane: Abstractions, Architectures, Algorithms, and Applications
    Michel, Oliver
    Bifulco, Roberto
    Retvari, Gabor
    Schmid, Stefan
    ACM COMPUTING SURVEYS, 2021, 54 (04)
  • [50] Design and Implementation of Programmable Data Plane Supporting Multiple Data Types
    Jing, Linan
    Chen, Xiao
    Wang, Jinlin
    ELECTRONICS, 2021, 10 (21)