IDR: An intrusion detection router for defending against Distributed Denial-of-Service (DDoS) attacks

被引:0
|
作者
Chan, EYK [1 ]
Chan, HW [1 ]
Chan, KM [1 ]
Chan, VPS [1 ]
Chanson, ST [1 ]
Cheung, MMH [1 ]
Chong, CF [1 ]
Chow, KP [1 ]
Hui, AKT [1 ]
Hui, LCK [1 ]
Lam, LCK [1 ]
Lau, WC [1 ]
Pun, KKH [1 ]
Tsang, AYF [1 ]
Tsang, WW [1 ]
Tso, SCW [1 ]
Yeung, DY [1 ]
Yu, KY [1 ]
机构
[1] Univ Hong Kong, Dept Comp Sci & Informat Syst, Hong Kong, Hong Kong, Peoples R China
关键词
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Distributed Denial-of-Service (DDoS) attack has turned into one of the major security threads in recent years. Usually the only solution is to stop the services or shut down the victim and then discard the attack traffic only after the DDoS attack characteristics (such as the destination ports of the attack packets) are known. In this paper we introduce a generic DDoS attack detection mechanism as well as the design and setup of a testbed for performing experiments and analysis. Our results showed that the mechanism can detect DDoS attack. This enable us to proceed to the next steps of packet classification and traffic control.
引用
收藏
页码:581 / 586
页数:6
相关论文
共 50 条
  • [1] Intrusion Prevention Against Distributed Denial-of-Service(DDoS) on the cloud
    Vanitha, R.
    [J]. INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2016, 16 (04): : 90 - 96
  • [2] Distributed denial-of-service and intrusion detection
    Zhou, Xiaobo
    Xu, Cheng-Zhong
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2007, 30 (03) : 819 - 822
  • [3] Defending against denial-of-service attacks with puzzle auctions
    Wang, XF
    Reiter, MK
    [J]. 2003 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2003, : 78 - 92
  • [4] Defending against flooding-based distributed denial-of-service attacks: A tutorial
    Chang, RKC
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2002, 40 (10) : 42 - 51
  • [5] Defending against distributed denial-of-service attacks with max-min fair server-centric router throttles
    Yau, DKY
    Lui, JCS
    Liang, F
    [J]. 2002 TENTH IEEE INTERNATIONAL WORKSHOP ON QUALITY OF SERVICE, 2002, : 35 - 44
  • [6] Defending against distributed denial-of-service attacks with max-min fair server-centric router throttles
    Yau, DKY
    Lui, JCS
    Liang, F
    Yam, Y
    [J]. IEEE-ACM TRANSACTIONS ON NETWORKING, 2005, 13 (01) : 29 - 42
  • [7] An effective defence mechanism for Distributed Denial-of-Service (DDoS) attacks using router-based techniques
    Kumarasamy, Saravanan
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURES, 2010, 6 (01) : 73 - 80
  • [8] Distributed defense against distributed denial-of-service attacks
    Shi, W
    Xiang, Y
    Zhou, WL
    [J]. DISTRIBUTED AND PARALLEL COMPUTING, 2005, 3719 : 357 - 362
  • [9] CNN-Based Network Intrusion Detection against Denial-of-Service Attacks
    Kim, Jiyeon
    Kim, Jiwon
    Kim, Hyunjung
    Shim, Minsun
    Choi, Eunjung
    [J]. ELECTRONICS, 2020, 9 (06) : 1 - 21
  • [10] Defending against Distributed Denial-of-Service (DDoS) Attacks Using Routing Assignments and Resource Allocation Strategies under Quality-of-Service (QoS) Constraints
    Yeong-Sung, Frank
    Tsang, Po-Hao
    Kuo, Chen-Bin
    [J]. WMSCI 2008: 12TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL III, PROCEEDINGS, 2008, : 221 - 226