首页> 外文会议>IEEE International Conference on Computer and Communication Systems >Development of Software-Defined Mesh Network Emulator Testbed for DDoS Defence Study
【24h】

Development of Software-Defined Mesh Network Emulator Testbed for DDoS Defence Study

机译:用于DDoS防御研究的软件定义的网状网络仿真器测试平台的开发

获取原文

摘要

This paper has proposed to develop a software-defined mesh network emulator testbed in order to study a network defense against a DDoS attack. By using SDN, virtual switches can be reprogrammed to drop attacker traffics at the earliest possible locations. This is advantageous in comparison with the current industrial practice whereby only a firewall sitting at the network domain border or a gateway can perform such dropping action. The testbed uses the GNS3 platform where OVS switches are constructed and controlled by the Opendaylight controller. A simple Linux script has been developed herein to instantiate a distributed ping attack from all possible starting switches to a victim gateway with the DDoS intention. The numerical example reported here shows TCP and UDP throughputs, round-trip time as measurable by emulated network users to demonstrate the application of SDN in resolving the attacking adverse effects.
机译:为了研究针对DDoS攻击的网络防御,本文提出了开发软件定义的网状网络仿真器测试平台的提议。通过使用SDN,可以对虚拟交换机进行重新编程,以在尽可能早的位置丢弃攻击者流量。与当前的工业实践相比是有利的,在当前的工业实践中,只有位于网络域边界的防火墙或网关才能执行这种丢弃操作。该测试平台使用GNS3平台,由Opendaylight控制器构造和控制OVS开关。本文开发了一种简单的Linux脚本,以实例化从所有可能的启动交换机到具有DDoS意图的受害网关的分布式ping攻击。此处报告的数字示例显示了TCP和UDP吞吐量,以及通过仿真网络用户可测量的往返时间,以演示SDN在解决攻击性不良影响方面的应用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号