【24h】

DDOS Mitigation Cloud-Based Service

机译:DDOS缓解基于云的服务

获取原文

摘要

Cloud computing has evolved over the last decade from a simple storage service for more complex ones, offering software as a service (SaaS), platforms as a service (PaaS) and most recently security as a service (SECaaS). The work presented in this paper is a response to: (1) the resource constraints in physical security devices such as firewalls or IPS/IDS, that can no more counter advanced DDOS attacks, (2) The expensive cost, management complexity and the requirement of high amount of resources on existing DDOS mitigation tools to verify the traffic. We propose a new architecture of a cloud based firewalling service using resources offered by the Cloud and characterized by: a low financial cost, high availability, reliability, self scaling and easy managing. In order to improve the efficiency of our proposal to face DDOS attacks, we deploy, configure and test our mitigation service using Network Function Virtualization technology (NFV) and other virtualization capabilities. We also detail some result and point out future work.
机译:在过去的十年中,云计算已经从简单的存储服务演变为更复杂的存储服务,提供软件即服务(SaaS),平台即服务(PaaS)以及最近的安全即服务(SECaaS)。本文提出的工作是对以下方面的回应:(1)物理安全设备(如防火墙或IPS / IDS)中的资源限制,无法再抵抗高级DDOS攻击;(2)昂贵的成本,管理复杂性和要求现有DDOS缓解工具上的大量资源来验证流量。我们提出了一种使用云提供的资源的基于云的防火墙服务的新架构,该架构的特点是:财务成本低,可用性高,可靠性高,可自伸缩且易于管理。为了提高我们针对DDOS攻击的建议的效率,我们使用网络功能虚拟化技术(NFV)和其他虚拟化功能来部署,配置和测试缓解服务。我们还将详细介绍一些结果并指出未来的工作。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号