A countermeasure against DDOS attacks using active networks technologies

被引:0
|
作者
Kashiwa, D
Chen, EY
Fuji, H
机构
[1] NTT Corp, Informat Sharing Platform Labs, Yokosuka, Kanagawa 2390847, Japan
[2] Keio Univ, Fac Sci & Technol, Tokyo 108, Japan
[3] Univ Tokyo, Tokyo, Japan
关键词
computer security; Internet; congestion control; active telecommunication network; distributed system; adaptive method; automatic classification;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
A Distributed Denial of Service (DDOS) attack consumes the resources of a remote host or network by sending a massive amount of IP packets from many distributed hosts. It is a pressing problem on the Internet as demonstrated by recent attacks on major e-commerce servers and ISPS. Since the attack is distributed and the attack tools evolve at a rapid and alarming rate, an effective solution must be formulated using a distributed and adaptive approach. In this paper we propose a countermeasure against DDOS attacks using a method we call Active Shaping. Our method employs the Active Networks technologies, which incorporates programmability into network nodes. The Active Networks technology enables us to deter congestion and bandwidth consumption of the backbone network caused by DDOS attacks, and to prevent our system from dropping packets of legitimate users mistakenly. This paper introduces the concept of our method, system design and evaluates the effectiveness of our method using a prototype..
引用
收藏
页码:605 / 629
页数:25
相关论文
共 50 条
  • [41] A Responsive Defense Mechanism Against DDoS Attacks
    Mosharraf, Negar
    Jayasumana, Anura P.
    Ray, Indrakshi
    FOUNDATIONS AND PRACTICE OF SECURITY (FPS 2014), 2015, 8930 : 347 - 355
  • [42] Research on An Effective Approach against DDoS Attacks
    Zeng Xiao-hui
    Peng Xuan-ge
    Li Man-hua
    Xu Hong-qi
    Jin Shi-yao
    2009 INTERNATIONAL CONFERENCE ON RESEARCH CHALLENGES IN COMPUTER SCIENCE, ICRCCS 2009, 2009, : 21 - +
  • [43] An Approach of DNS Protection Against DDoS Attacks
    Georgiev, Ivan
    Nikolova, Kamelia
    2017 13TH INTERNATIONAL CONFERENCE ON ADVANCED TECHNOLOGIES, SYSTEMS AND SERVICES IN TELECOMMUNICATIONS (TELSIKS), 2017, : 140 - 143
  • [44] Can Machine Learning Techniques be effectively used in real networks against DDoS attacks?
    Bakker, Jarrod N.
    Ng, Bryan
    Seah, Winston K. G.
    2018 27TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND NETWORKS (ICCCN), 2018,
  • [45] Research on Multi-Layer Defense against DDoS Attacks in Intelligent Distribution Networks
    Xu, Kai
    Li, Zemin
    Liang, Nan
    Kong, Fanchun
    Lei, Shaobo
    Wang, Shengjie
    Paul, Agyemang
    Wu, Zhefu
    ELECTRONICS, 2024, 13 (18)
  • [46] A Distributed Mechanism to Protect Against DDoS Attacks
    Mosharraf, Negar
    Jayasumana, Anura P.
    Ray, Indrakshi
    DATA AND APPLICATIONS SECURITY AND PRIVACY XXXI, DBSEC 2017, 2017, 10359 : 529 - 540
  • [47] Optimized Moving Target Defense Against DDoS Attacks in IoT Networks: When to Adapt?
    Osei, Arnold Brendan
    Yeginati, Swati Rudra
    Al Mtawa, Yaser
    Halabi, Talal
    2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, : 2782 - 2787
  • [48] A Countermeasure against Face-Spoofing Attacks Using an Interaction Video Framework
    Kong, Kam
    Hei, Xiali
    Zeng, Ting
    Ling, Caijin
    Zhang, Chao
    Song, Binheng
    Cao, Hui
    Peays, Michael
    2017 IEEE 3RD INFORMATION TECHNOLOGY AND MECHATRONICS ENGINEERING CONFERENCE (ITOEC), 2017, : 758 - 763
  • [49] An Analysis of DDoS Attacks in a Smart Home Networks
    Saxena, Utkarsh
    Sodhi, J. S.
    Singh, Yaduveer
    PROCEEDINGS OF THE CONFLUENCE 2020: 10TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, DATA SCIENCE & ENGINEERING, 2020, : 272 - 276
  • [50] A more flexible countermeasure against side channel attacks using window method
    Okeya, K
    Takagi, T
    CRYPTOGRAPHIC HARDWARE AND EMBEDDED SYSTEMS CHES 2003, PROCEEDINGS, 2003, 2779 : 397 - 410