首页> 外文会议> >Analyzing the secure overlay services architecture under intelligent DDoS attacks
【24h】

Analyzing the secure overlay services architecture under intelligent DDoS attacks

机译:分析智能DDoS攻击下的安全覆盖服务架构

获取原文

摘要

Distributed denial of service (DDoS) attacks are currently major threats to communication in the Internet. A secure overlay services (SOS) architecture has been proposed to provide reliable communication between clients and a target under DDoS attacks. The SOS architecture employs a set of overlay nodes arranged in three hierarchical layers that controls access to the target. Although the architecture is novel and works well under simple congestion based attacks, we observe that it is vulnerable under more intelligent attacks. We generalize the SOS architecture by introducing more flexibility in layering to the original architecture. We define two intelligent DDoS attack models and develop an analytical approach to study the impacts of the number of layers, number of neighbors per node and the node distribution per layer on the system performance under these two attack models. Our data clearly demonstrate that performance is indeed sensitive to the design features and the different design features interact with each other to impact overall system performance.
机译:分布式拒绝服务(DDoS)攻击当前是Internet上通信的主要威胁。已提出一种安全覆盖服务(SOS)架构,以在DDoS攻击下在客户端和目标之间提供可靠的通信。 SOS体系结构使用一组布置在三个层次结构层中的覆盖节点,以控制对目标的访问。尽管该体系结构是新颖的,并且在基于简单拥塞的攻击下可以很好地工作,但我们发现它在更智能的攻击下很脆弱。通过在分层到原始体系结构时引入更多的灵活性,我们对SOS体系结构进行了概括。我们定义了两个智能的DDoS攻击模型,并开发了一种分析方法来研究这两种攻击模型下的层数,每个节点的邻居数以及每个层的节点分布对系统性能的影响。我们的数据清楚地表明,性能确实对设计功能敏感,并且不同的设计功能相互影响,从而影响整体系统性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号