首页> 外文会议>International conference on internet and distributed computing systems >Modelling and Simulation of a Defense Strategy to Face Indirect DDoS Flooding Attacks
【24h】

Modelling and Simulation of a Defense Strategy to Face Indirect DDoS Flooding Attacks

机译:面对间接DDoS泛洪攻击的防御策略的建模和仿真

获取原文

摘要

Distributed Denial of Service (DDoS) flooding attack is one of the most diffused and effective threat against services and applications running over the Internet. Its distributed and cooperative nature makes it complicated to prevent and/or to counteract. StopIt is a robust, filter-based defence mechanism which is able to deal with various types of massive DDoS flooding attacks but which fails when the DDoS is achieved indirectly, i.e. by congestion of a link shared with the victim. This paper introduces an extension of StopIt which makes it able to cooperate with capability-based mechanisms for defeating indirect attacks. The enhanced version of the protocol has been implemented into the ns-3 simulator and its effectiveness has been evaluated under different scenarios.
机译:分布式拒绝服务(DDoS)泛洪攻击是对Internet上运行的服务和应用程序的最分散,最有效的威胁之一。它的分布式和协作性质使预防和/或抵消变得很复杂。 StopIt是一种强大的,基于过滤器的防御机制,它能够处理各种类型的大规模DDoS泛洪攻击,但是如果间接实现DDoS(即,与受害者共享的链路拥塞)则失败。本文介绍了StopIt的扩展,使它能够与基于能力的机制配合使用,以抵御间接攻击。该协议的增强版本已在ns-3仿真器中实现,并已在不同情况下评估了其有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号