ASTVA: DDoS-limiting Architecture for Next Generation Internet

被引:0
|
作者
Wei Wei [1 ]
Xia Yingjie [2 ]
Dong Yabo [3 ]
机构
[1] Henan Univ Technol, Coll Informat Sci & Engn, Zhengzhou 450003, Peoples R China
[2] Hangzhou Normal Univ, Hangzhou Inst Serv Engn, Hangzhou 310012, Zhejiang, Peoples R China
[3] Zhejiang Univ, Coll Comp Sci & Technol, Hangzhou 310027, Zhejiang, Peoples R China
来源
AUTOMATIC MANUFACTURING SYSTEMS II, PTS 1 AND 2 | 2012年 / 542-543卷
关键词
DDoS defense; Architecture; Next Generation Internet; Internet of Things; NETWORK;
D O I
10.4028/www.scientific.net/AMR.542-543.1275
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security is an important consideration in next generation Internet, where Distributed Denial of Service (DDoS) attack is still a serious threat, especially when Internet of Things is taken into account. To defend against DDoS, capability based Traffic Validation Architecture (TVA) is an excellent candidate. However, there are some shortcomings which make it not so practical, e.g., it has large capability overhead and some DoS attacks could escape from it. To overcome these problems, we proposed the autonomic system based architecture: ASTVA, which created and verified capability using autonomic system as the basic defense unit. In ASTVA, two kinds of sub-capabilities were provided and serveral system security levels were given by mixing the two kinds of sub-capabilities; several key parameters were adjusted dynamically to enhance system flexibility; and an anti-shrew function was added to TVA to make it more robust against low-rate DoS attacks. Finally, we gave out several simulation tests and the results show that ASTVA is more robust and flexible than TVA and is more practical to real world security.
引用
收藏
页码:1275 / +
页数:2
相关论文
共 50 条
  • [31] Next generation DDoS web based attacks
    Reynolds, MS
    IEEE SYSTEMS, MAN AND CYBERNETICS SOCIETY INFORMATION ASSURANCE WORKSHOP, 2003, : 211 - 215
  • [32] Internet 2 and the next generation Internet
    Preston, Cecilia
    Searcher:Magazine for Database Professionals, 1999, 7 (01):
  • [33] IER: ID-ELOC-RLOC BASED ARCHITECTURE FOR NEXT GENERATION INTERNET
    Yang Jiahai
    Xu Mingwei
    Wang Hui
    Chen Wenlong
    Yang Yuan
    Dong Qingzhou
    Wang Yang
    Journal of Electronics(China), 2014, 31 (06) : 519 - 536
  • [34] Study on Multi-dimentional Extendibility of Next-generation Internet Architecture
    He, Zhonglin
    MINES 2009: FIRST INTERNATIONAL CONFERENCE ON MULTIMEDIA INFORMATION NETWORKING AND SECURITY, VOL 2, PROCEEDINGS, 2009, : 37 - 40
  • [35] An architecture for a next-generation internet based on web services and utility computing
    Darlington, John
    Cohen, Jeremy
    Lee, William
    15TH IEEE INTERNATIONAL WORKSHOPS ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES, PROCEEDINGS, 2006, : 169 - +
  • [36] Simulation of the Internet Computer Protocol: the Next Generation Multi-Blockchain Architecture
    Serena, Luca
    Li, AoXuan
    Zichichi, Mirko
    D'Angelo, Gabriele
    Ferretti, Stefano
    Tang, Su-Kit
    2022 IEEE/ACM 26TH INTERNATIONAL SYMPOSIUM ON DISTRIBUTED SIMULATION AND REAL TIME APPLICATIONS (DS-RT), 2022,
  • [37] Data-Plane Energy Efficiency of a Next-Generation Internet Architecture
    Tabaeiaghdaei, Seyedali
    Perrig, Adrian
    2022 27TH IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (IEEE ISCC 2022), 2022,
  • [38] Focus on next generation internet
    Deng, Xiaoyu
    Chen, Wei
    2005 1st IEEE/IFIP International Conference in Central Asia on Internet (ICI), 2005, : 139 - 140
  • [39] The Next Generation Internet of Things
    Vermani, Shalini
    PROCEEDINGS OF THE 10TH INDIACOM - 2016 3RD INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT, 2016, : 779 - 781
  • [40] The next-generation Internet
    Atiquzzaman, M
    Guizani, M
    IEEE COMMUNICATIONS MAGAZINE, 2005, 43 (05) : 113 - 113