E-Had: A distributed and collaborative detection framework for early detection of DDoS attacks

被引:18
|
作者
Patil, Nilesh Vishwasrao [1 ]
Krishna, C. Rama [2 ]
Kumar, Krishan [3 ]
Behal, Sunny [4 ]
机构
[1] NITTTR, Chandigarh, India
[2] NITTTR, Dept Comp Sci, Chandigarh, India
[3] Panjab Univ, Univ Inst Technol, Dept Informat Technol, Chandigarh, India
[4] Dept Comp Sci & Engn, SBS State Tech Campus, Firozpur, Punjab, India
关键词
DoS attack; DDoS attack; Apache Hadoop; Hadoop Distributed File System (HDFS); MapReduce; Entropy; Big Data; DETECTION SYSTEM; FLASH EVENTS; DEFENSE;
D O I
10.1016/j.jksuci.2019.06.016
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
During the past few years, the traffic volume of legitimate traffic and attack traffic has increased mani-folds up to Terabytes per second (Tbps). Because of the processing of such a huge traffic volume, it has become implausible to detect high rate attacks in time using conventional DDoS defense architectures. At present, the majority of the DDoS defense systems are deployed predominantly at the victim-end domain But these victim-end defense systems themselves are vulnerable to HR-DDoS attacks as the mammoth volume of attack traffic is generated by such type of attacks. The insufficient computational resources further make the problem more crucial at the victim-end. This paper proposed a distributed and collaborative architecture called E-Had that is capable of efficiently processing a large amount of data by distributing it among a number of mappers and reducers in a Hadoop based cluster. The proposed E -Had system has been comprehensively validated using various publicly available benchmarked datasets and real datasets generated in HA-DDoS testbed in terms of various detection system evaluation metrics. The experimental results clearly show that the proposed detection system is capable of early detection of different scenarios of DDoS attacks along with differentiating them from flash crowds.(c) 2019 The Authors. Production and hosting by Elsevier B.V. on behalf of King Saud University. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页码:1373 / 1387
页数:15
相关论文
共 50 条
  • [1] DICOF : A Distributed and Collaborative Framework for Hybrid DDoS Attack Detection
    Leng, Siyuan
    Xie, Yingke
    Zhang, Yifan
    Guo, Yunchuan
    Fang, Liang
    Li, Fenghua
    2022 27TH IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (IEEE ISCC 2022), 2022,
  • [2] An integrated SDN framework for early detection of DDoS attacks in cloud computing
    Asha Varma Songa
    Ganesh Reddy Karri
    Journal of Cloud Computing, 13
  • [3] An integrated SDN framework for early detection of DDoS attacks in cloud computing
    Songa, Asha Varma
    Karri, Ganesh Reddy
    JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2024, 13 (01):
  • [4] Collaborative Detection of DDoS Attacks Based on Chord Protocol
    Han, Zilong
    Wang, Xiaofeng
    Wang, Fei
    Wang, Yongjun
    2012 IEEE 9TH INTERNATIONAL CONFERENCE ON MOBILE AD-HOC AND SENSOR SYSTEMS (MASS): WORKSHOPS, 2012,
  • [5] Collaborative Framework for Early Detection of RAT-Bots Attacks
    Awad, Ahmed A.
    Sayed, Samir G.
    Salem, Sameh A.
    IEEE ACCESS, 2019, 7 : 71780 - 71790
  • [6] Collaborative detection of DDoS attacks over multiple network domains
    Chen, Yu
    Hwang, Kai
    Ku, Wei-Shinn
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2007, 18 (12) : 1649 - 1662
  • [7] FireCol: A Collaborative Protection Network for the Detection of Flooding DDoS Attacks
    Francois, Jerome
    Aib, Issam
    Boutaba, Raouf
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2012, 20 (06) : 1828 - 1841
  • [8] Collaborative change detection of DDoS attacks on community and ISP networks
    Chen, Yu
    Hwang, Kai
    2006 INTERNATIONAL SYMPOSIUM ON COLLABORATIVE TECHNOLOGIES AND SYSTEMS, PROCEEDINGS, 2006, : 401 - +
  • [9] A Distributed Collaborative Entrance Defense Framework Against DDoS Attacks on Satellite Internet
    Guo, Wei
    Xu, Jin
    Pei, Yukui
    Yin, Liuguo
    Jiang, Chunxiao
    Ge, Ning
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (17) : 15497 - 15510
  • [10] Early Detection of DDoS Attacks against SDN Controllers
    Mousavi, Seyed Mohammad
    St-Hilaire, Marc
    2015 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2015, : 77 - 81