A DDoS attack defending scheme based on network processor

被引:0
|
作者
Li Xinlei [1 ]
Zheng Kangfeng [1 ]
Yang Yixian [1 ]
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Informat Secur Ctr, Beijing 100876, Peoples R China
关键词
distributed denial of service attacks; QoS; network processor; defending;
D O I
10.1109/ICIE.2009.107
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The distributed denial of service attacks have become more and more frequent and caused some fatal problems. Many researches have been done to detect and defend such attacks, however, many solutions are still in the phase of theoretical studies. Some of them may have certain practical value, but they have to reconstruct the existing network and the routing instruments with great cost. This paper proposes a DDoS attack defending scheme based on network processor. The scheme takes advantage of network processor's powerful process ability to divide the network flow into different types firstly, and then uses a QoS mechanism to ensure essential communications as well as to eliminate the attack flow to the greatest extent. Experiment results show that the scheme can provide enough bandwidth for high priority flow, and effectively weaken the attack flow.
引用
收藏
页码:238 / 241
页数:4
相关论文
共 50 条
  • [21] IDS for Improving DDoS Attack Recognition Based on Attack Profiles and Network Traffic Features
    Sallam, Amer A.
    Kabir, Muhammad Nomani
    Alginahi, Yasser M.
    Jamal, Ahmed
    Esmeel, Thamer Khalil
    2020 16TH IEEE INTERNATIONAL COLLOQUIUM ON SIGNAL PROCESSING & ITS APPLICATIONS (CSPA 2020), 2020, : 255 - 260
  • [22] Estimating delay in a Data forwarding scheme for defending Jamming attack in Wireless Sensor Network
    Ghosal, Amrita
    Halder, Subir
    Chatterjee, Sreerupa
    Sen, Jaydeep
    DasBit, Sipra
    THIRD INTERNATIONAL CONFERENCE ON NEXT GENERATION MOBILE APPLICATIONS, SERVICES, AND TECHNOLOGIES, PROCEEDINGS, 2009, : 351 - +
  • [23] A cooperative DDoS attack detection scheme based on entropy and ensemble learning in SDN
    Shanshan Yu
    Jicheng Zhang
    Ju Liu
    Xiaoqing Zhang
    Yafeng Li
    Tianfeng Xu
    EURASIP Journal on Wireless Communications and Networking, 2021
  • [24] Estimating Strength of a DDoS Attack in Real Time Using ANN Based Scheme
    Agrawal, P. K.
    Gupta, B. B.
    Jain, Satbir
    Pattanshetti, M. K.
    COMPUTER NETWORKS AND INTELLIGENT COMPUTING, 2011, 157 : 301 - +
  • [25] A deep learning based detection scheme towards DDos Attack in permissioned blockchains
    Li, Chuang
    Huo, Dongdong
    Wang, Sixiang
    Deng, Yaoyi
    Zhou, Qihui
    Wang, Yu
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 2644 - 2649
  • [26] Efficient DDoS attack detection and prevention scheme based on SDN in cloud environment
    He H.
    Hu Y.
    Zheng L.
    Xue Z.
    He, Heng (heheng@wust.edu.cn), 2018, Editorial Board of Journal on Communications (39): : 139 - 151
  • [27] A cooperative DDoS attack detection scheme based on entropy and ensemble learning in SDN
    Yu, Shanshan
    Zhang, Jicheng
    Liu, Ju
    Zhang, Xiaoqing
    Li, Yafeng
    Xu, Tianfeng
    EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2021, 2021 (01)
  • [28] A DDoS Attack Detection Method Based on SVM in Software Defined Network
    Ye, Jin
    Cheng, Xiangyang
    Zhu, Jian
    Feng, Luting
    Song, Ling
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [29] PMS an expeditious marking scheme to combat with the DDoS attack
    Tariq, Usman
    Hong, ManPyo
    Lhee, Kyung-Suk
    Proceedings of the INMIC 2005: 9th International Multitopic Conference - Proceedings, 2005, : 260 - 263
  • [30] A Novel Defense Scheme against DDOS Attack in VANET
    Pathre, Ayonija
    Agrawal, Chetan
    Jain, Anurag
    2013 TENTH INTERNATIONAL CONFERENCE ON WIRELESS AND OPTICAL COMMUNICATIONS NETWORKS (WOCN), 2013,