首页> 外文会议>IEEE International Symposium on Reliable Distributed Systems >Denial of Service Elusion (DoSE): Keeping Clients Connected for Less
【24h】

Denial of Service Elusion (DoSE): Keeping Clients Connected for Less

机译:拒绝服务救济(剂量):保持客户端的客户端

获取原文

摘要

Denial of Service (DoS) attacks continue to grow in magnitude, duration, and frequency increasing the demand for techniques to protect services from disruption, especially at a low cost. We present Denial of Service Elusion (DoSE) as an inexpensive method for mitigating network layer attacks by utilizing cloud infrastructure and content delivery networks to protect services from disruption. DoSE uses these services to create a relay network between the client and the protected service that evades attack by selectively releasing IP address information. DoSE incorporates client reputation as a function of prior behavior to stop attackers along with a feedback controller to limit costs. We evaluate DoSE by modeling relays, clients, and attackers in an agent-based MATLAB simulator. The results show DoSE can mitigate a single-insider attack on 1,000 legitimate clients in 3.9 minutes while satisfying an average of 88.2% of requests during the attack.
机译:拒绝服务(DOS)攻击继续增大,持续时间和频率,增加对保护服务免受中断的需求,特别是以低成本。我们通过利用云基础设施和内容传递网络来保护服务免受中断,剥夺拒绝服务漏洞(剂量)作为减轻网络层攻击的廉价方法。剂量使用这些服务来在客户端和受保护的服务之间创建中继网络,通过选择性地释放IP地址信息来逃避攻击。剂量作为先前行为的函数将客户声誉纳入停止攻击者以及反馈控制器以限制成本。我们通过在基于代理的MATLAB模拟器中建模的继电器,客户和攻击者进行评估剂量。结果显示剂量可以在3.9分钟内对1,000名合理客户进行一次内幕攻击,同时在攻击期间平均满足88.2%的要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号