An improved solution against DoS attacks using active network technology

被引:0
|
作者
Wei, H [1 ]
Xu, WG [1 ]
An, G [1 ]
Shi, LJ [1 ]
Fang, ZY [1 ]
机构
[1] Jilin Univ, Coll Comp Sci & Technol, Changchun 130012, Peoples R China
关键词
active networks; DoS/DDoS; cluster;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Network Security is a key problem that is ignored by people or is difficult to solve, especially some network attack plotted by illegal users, such as DoS and DDoS attacks. Although DoS and DDoS attacks can be treated as a congestion-control problem, most congestions are caused by those illegal users who do not obey end-end congestion control. So this problem must be solved through cooperation of IDSs and middle nodes (router, switch and so on). Appearance of active network architecture provides a beneficial condition for solving the problem. In active network, some computation functionality can be added into each middle node, so these middle nodes can identify and drop those flow-packets belonging to DoS/DDoS attacks. Those upstream nodes can also be notified by downstream node to drop these packets in order to make ordinary flow get more upstream bandwidth. This paper presents an architecture of identifying and controlling these attack clusters and an algorithm for implementing this architecture. The architecture includes both a mechanism of identifying and controlling a cluster by using technology of active network and a notify mechanism between routers under the control of administration controller.
引用
收藏
页码:115 / 119
页数:5
相关论文
共 50 条
  • [1] Defending Dos/DDOS attacks using network new technology
    Lu, N
    Chen, HX
    Xiao, J
    ICCC2004: Proceedings of the 16th International Conference on Computer Communication Vol 1and 2, 2004, : 1612 - 1617
  • [2] An active security protocol against DoS attacks
    Cotroneo, D
    Peluso, L
    Romano, SP
    Ventre, G
    ISCC 2002: SEVENTH INTERNATIONAL SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, PROCEEDINGS, 2002, : 496 - 501
  • [3] Active cache based defense against DoS attacks in wireless mesh network
    Santhanam, Lakshmi
    Nandiraju, Deepti
    Nandiraju, Nagesh
    Agrawal, Dharma P.
    2007 2ND INTERNATIONAL SYMPOSIUM ON WIRELESS PERVASIVE COMPUTING, VOLS 1 AND 2, 2007, : 419 - +
  • [4] SIMULATED ANALYSIS OF A CRYPTOGRAPHIC SOLUTION FOR WLANS AGAINST DOS ATTACKS
    Singh, R.
    Sharma, T. P.
    JOURNAL OF ENGINEERING SCIENCE AND TECHNOLOGY, 2014, 9 : 57 - 67
  • [5] Stochastic Security Performance of Active Cache Based Defense Against DoS Attacks in Wireless Mesh Network
    Yan, Ye
    Cao, Jiannong
    Li, Zhu
    MESH: 2009 SECOND INTERNATIONAL CONFERENCE ON ADVANCES IN MESH NETWORKS, 2009, : 30 - 36
  • [6] Active control strategy for switched systems against asynchronous DoS attacks
    Zhao, Rui
    Zuo, Zhiqiang
    Wang, Yijing
    Zhang, Wentao
    AUTOMATICA, 2023, 148
  • [7] Defense Against SYN Flood DoS Attacks Using Network-based Mitigation Techniques
    Goldschmidt, Patrik
    Kucera, Jan
    2021 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2021), 2021, : 772 - 777
  • [8] Defend GPUs Against DoS Attacks
    Zhang, Wei
    2013 IEEE 32ND INTERNATIONAL PERFORMANCE COMPUTING AND COMMUNICATIONS CONFERENCE (IPCCC), 2013,
  • [9] On the Robustness of SCTP against DoS Attacks
    Rathgeb, Erwin P.
    Hohendorf, Carsten
    Nordhoff, Michael
    Third 2008 International Conference on Convergence and Hybrid Information Technology, Vol 2, Proceedings, 2008, : 1144 - 1149
  • [10] Cooperative routers against DoS attacks
    Song, HY
    Kim, HG
    INFORMATION SECURITY AND PRIVACY, PROCEEDINGS, 2003, 2727 : 204 - 213