TCP/IP Header Classification for Detecting Spoofed DDoS Attack in Cloud Environment

被引:0
|
作者
Osanaiye, Opeyemi. A. [1 ]
Dlodlo, Mqhele [1 ]
机构
[1] Univ Cape Town, Dept Elect Engn, Cape Town, South Africa
关键词
Cloud Computing; DDoS attack; IP Spoofing; OS Fingerprinting; TCP/IP Header;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Spoofing of IP is a key attribute of Distributed Denial of Service (DDoS) attack that consumes Cloud resources and network bandwidth within a short period of time. This is costly to both the providers and users of Cloud. Cloud computing offers a metered service, which uses pay-per use. Therefore providing a high available Cloud will improve the Cloud provider's reputation and financial proceeds. To the Cloud users, it solely depends on the provider for its resources therefore it must always be available as contained in the service level agreement (SLA). The goal of this paper is to analyse and compare the TCP/IP packet header features of incoming traffic that identifies remote hosts according to their Operating System. This is used to detect the true source of a packet during spoofed DDoS attack. Our solution further analyses the observed final TTL value in both active and passive stage of the OS fingerprints to cater for false negative during detection. We demonstrated our proposed solution on a Xen Cloud Platform Test bed.
引用
收藏
页码:219 / 224
页数:6
相关论文
共 50 条
  • [31] Efficient DDoS attack detection and prevention scheme based on SDN in cloud environment
    He H.
    Hu Y.
    Zheng L.
    Xue Z.
    He, Heng (heheng@wust.edu.cn), 2018, Editorial Board of Journal on Communications (39): : 139 - 151
  • [32] An experimental study of TCP/IP's van jacobson header compression behavior in lossy space environment
    Department of Electrical Engineering, Lamar University, Beaumont, TX 77710
    IEEE; IEEE Vehicular Technology Society, IEEE VTS; The Aerospace Corporation, 1600, 4046-4050 (2004):
  • [33] An experimental study of TCP/IP's Van Jacobson header compression behavior in lossy space environment
    Wang, RH
    VTC2004-FALL: 2004 IEEE 60TH VEHICULAR TECHNOLOGY CONFERENCE, VOLS 1-7: WIRELESS TECHNOLOGIES FOR GLOBAL SECURITY, 2004, : 4046 - 4050
  • [34] Classification of DDoS attack traffic on SDN network environment using deep learning
    Clinton, Urikhimbam Boby
    Hoque, Nazrul
    Singh, Khumukcham Robindro
    CYBERSECURITY, 2024, 7 (01):
  • [35] An efficient SVM based DEHO classifier to detect DDoS attack in cloud computing environment
    MM, Gowthul Alam
    S, Jerald Nirmal Kumar
    R, Uma Mageswari
    TF, Michael Raj
    Computer Networks, 2022, 215
  • [36] SDN, A Research on SDN Assets and Tools to Defense DDoS Attack in Cloud Computing Environment
    Tamanna, Tasnim
    Fatema, Tasmiah
    Saha, Reepa
    2017 2ND IEEE INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, SIGNAL PROCESSING AND NETWORKING (WISPNET), 2017, : 1670 - 1674
  • [37] An SDN-Assisted Defense Mechduanism for the Shrew DDoS Attack in a Cloud Computing Environment
    Agrawal, Neha
    Tapaswi, Shashikala
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2021, 29 (02)
  • [38] An efficient SVM based DEHO classifier to detect DDoS attack in cloud computing environment
    Alam, Gowthul M. M.
    Kumar, Jerald Nirmal S.
    Mageswari, Uma R.
    Raj, Michael T. F.
    COMPUTER NETWORKS, 2022, 215
  • [39] The Performance Analysis of N-S Architecture to Mitigate DDoS Attack in Cloud Environment
    Kilari, Nagaraju
    Sridaran, R.
    PROCEEDINGS OF THE 10TH INDIACOM - 2016 3RD INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT, 2016, : 3460 - 3463
  • [40] An SDN-Assisted Defense Mechanism for the Shrew DDoS Attack in a Cloud Computing Environment
    Neha Agrawal
    Shashikala Tapaswi
    Journal of Network and Systems Management, 2021, 29