SDN-Assisted Network-Based Mitigation of Slow DDoS Attacks

被引:18
|
作者
Lukaseder, Thomas [1 ]
Maile, Lisa [1 ]
Erb, Benjamin [1 ]
Kargl, Frank [1 ]
机构
[1] Ulm Univ, Inst Distributed Syst, Albert Einstein Allee 11, D-89081 Ulm, Germany
关键词
DDoS mitigation; Slow-running DDoS attacks Slow HTTP; Network-based mitigation; Software-defined networking;
D O I
10.1007/978-3-030-01704-0_6
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Slow-running attacks against network applications are often not easy to detect, as the attackers behave according to the specification. The servers of many network applications are not prepared for such attacks, either due to missing countermeasures or because their default configurations ignores such attacks. The pressure to secure network services against such attacks is shifting more and more from the service operators to the network operators of the servers under attack. Recent technologies such as software-defined networking offer the flexibility and extensibility to analyze and influence network flows without the assistance of the target operator. Based on our previous work on a network-based mitigation, we have extended a framework to detect and mitigate slow-running DDoS attacks within the network infrastructure, but without requiring access to servers under attack. We developed and evaluated several identification schemes to identify attackers in the network solely based on network traffic information. We showed that by measuring the packet rate and the uniformity of the packet distances, a reliable identificator can be built, given a training period of the deployment network.
引用
收藏
页码:102 / 121
页数:20
相关论文
共 50 条
  • [1] Neural Network-Based Approach for Detection and Mitigation of DDoS Attacks in SDN Environments
    Hannache, Oussama
    Batouche, Mohamed Chaouki
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2020, 14 (03) : 50 - 71
  • [2] SDN-Assisted Slow HTTP DDoS Attack Defense Method
    Hong, Kiwon
    Kim, Youngjun
    Choi, Hyungoo
    Park, Jinwoo
    IEEE COMMUNICATIONS LETTERS, 2018, 22 (04) : 688 - 691
  • [3] An Extensible Host-Agnostic Framework for SDN-Assisted DDoS-Mitigation
    Lukaseder, Thomas
    Hunt, Alexander
    Stehle, Christian
    Wagner, Denis
    van der Heijden, Rens
    Kargl, Frank
    2017 IEEE 42ND CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN), 2017, : 619 - 622
  • [4] SDN Based Collaborative Scheme for Mitigation of DDoS Attacks
    Hameed, Sufian
    Khan, Hassan Ahmed
    FUTURE INTERNET, 2018, 10 (03)
  • [5] SDN-Assisted DDoS Defense Framework for the Internet of Multimedia Things
    Sahoo, Kshira Sagar
    Puthal, Deepak
    ACM TRANSACTIONS ON MULTIMEDIA COMPUTING COMMUNICATIONS AND APPLICATIONS, 2021, 16 (03)
  • [6] Prevention and Mitigation of DNS based DDoS attacks in SDN Environment
    Saharan, Shail
    Gupta, Vishal
    2019 11TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2019, : 606 - 608
  • [7] SDN-based detection and mitigation of DDoS attacks on smart homes
    Garba, Usman Haruna
    Toosi, Adel N.
    Pasha, Muhammad Fermi
    Khan, Suleman
    COMPUTER COMMUNICATIONS, 2024, 221 : 29 - 41
  • [8] DNS Amplification Based DDoS Attacks in SDN Environment: Detection and Mitigation
    Gupta, Vishal
    Kochar, Amrit
    Saharan, Shail
    Kulshrestha, Rakhee
    2019 IEEE 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS 2019), 2019, : 473 - 478
  • [9] One-Dimensional Convolutional Neural Network for Detection and Mitigation of DDoS Attacks in SDN
    Alshra'a, Abdullah
    Jochen, Seitz
    MACHINE LEARNING FOR NETWORKING, MLN 2021, 2022, 13175 : 11 - 28
  • [10] Detection and mitigation of DDoS attacks based on multi-dimensional characteristics in SDN
    Wang, Kun
    Fu, Yu
    Duan, Xueyuan
    Liu, Taotao
    SCIENTIFIC REPORTS, 2024, 14 (01):