D-FACE: An anomaly based distributed approach for early detection of DDoS attacks and flash events

被引:62
|
作者
Behal, Sunny [1 ]
Kumar, Krishan [2 ]
Sachdeva, Monika [3 ]
机构
[1] IKG Punjab Tech Univ, Kapurthala, Punjab, India
[2] Panjab Univ, UIET, Dept IT, Chandigarh, India
[3] IKG Punjab Tech Univ, Dept CSE, Kapurthala, Punjab, India
关键词
Network security; DDoS attacks; Flash events; Entropy; Information distance; ENTROPY; SYSTEM;
D O I
10.1016/j.jnca.2018.03.024
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In the present computer era, though the Internet-based applications are the driving force of social evolution, yet its architectural vulnerabilities proffer plethoric leisure to the attackers for conquering diversity of attacks on its services. Distributed Denial of Service (DDoS) is one of such prominent attack that constitutes a lethal threat to Internet domain that harnesses its computing and communication resources. Despite the presence of enormous defense solutions, ensuring the security and availability of data, resources, and services to end users remains an ongoing research challenge. In addition, the increase in network traffic rates of legitimate traffic and flow similarity of attack traffic with legitimate traffic has further made DDoS problem more crucial. The current research has deployed DDoS defense solutions primarily at the victim-end because of the inherent advantages of easy deployment and availability of complete attack information. However, the huge network traffic volume generated by DDoS attacks and lack of sufficient computational resources at the victim-end makes defense solution itself vulnerable to these attacks. This paper proposes an ISP level distributed, flexible, automated, and collaborative (D-FACE) defense system which not only distributes the computational and storage complexity to the nearest point of presence (PoPs) routers but also leads to an early detection of DDoS attacks and flash events (FEs). The results show that D-FACE defense system outperformed the existing Entropy-based systems on various defense system evaluation metrics.
引用
收藏
页码:49 / 63
页数:15
相关论文
共 50 条
  • [1] A comprehensive approach to discriminate DDoS attacks from flash events
    Sachdeva, Monika
    Kumar, Krishan
    Singh, Gurvinder
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2016, 26 : 8 - 22
  • [2] Anomaly Detection for DDoS Attacks Based on Gini Coefficient
    Liu, Yun
    Jiang, Siyu
    Huang, Jiuming
    PROCEEDINGS OF THE 2013 INTERNATIONAL CONFERENCE ON ADVANCED ICT AND EDUCATION, 2013, 33 : 649 - 654
  • [3] An anomaly based distributed detection system for DDoS attacks in Tier-2 ISP networks
    Bhandari, Abhinav
    Kumar, Krishan
    Sangal, A. L.
    Behal, Sunny
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2021, 12 (01) : 1387 - 1406
  • [4] An anomaly based distributed detection system for DDoS attacks in Tier-2 ISP networks
    Abhinav Bhandari
    Krishan Kumar
    A. L. Sangal
    Sunny Behal
    Journal of Ambient Intelligence and Humanized Computing, 2021, 12 : 1387 - 1406
  • [5] Detection of DDoS attacks and flash events using novel information theory metrics
    Behal, Sunny
    Kumar, Krishan
    COMPUTER NETWORKS, 2017, 116 : 96 - 110
  • [6] An RBF-PSO Based Approach for Early Detection of DDoS Attacks in SDN
    Dayal, Neelam
    Srivastava, Shashank
    2018 10TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2018, : 17 - 24
  • [7] Detection of DDoS Attacks and Flash Events Using Shannon Entropy, KOAD and Mahalanobis Distance
    Daneshgadeh, Salva
    Ahmed, Tarem
    Kemmerich, Thomas
    Baykal, Nazife
    PROCEEDINGS OF THE 2019 22ND CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS AND WORKSHOPS (ICIN), 2019, : 222 - 229
  • [8] DDoS Attacks and Flash Event Detection Based on Flow Characteristics in SDN
    Sun, Guozi
    Jiang, Wenti
    Gu, Yu
    Ren, Danni
    Li, Huakang
    2018 15TH IEEE INTERNATIONAL CONFERENCE ON ADVANCED VIDEO AND SIGNAL BASED SURVEILLANCE (AVSS), 2018, : 556 - 561
  • [9] Distributed Denial of Service (DDoS) Attacks Detection: A Machine Learning Approach
    Samom, Premson Singh
    Taggu, Amar
    APPLIED SOFT COMPUTING AND COMMUNICATION NETWORKS, 2021, 187 : 75 - 87
  • [10] K-DDoS-SDN: A distributed DDoS attacks detection approach for protecting SDN environment
    Kaur, Amandeep
    Krishna, C. Rama
    Patil, Nilesh Vishwasrao
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (03):