首页> 外文期刊>Concurrency and computation: practice and experience >Distributed frameworks for detecting distributed denial of service attacks: A comprehensive review, challenges and future directions
【24h】

Distributed frameworks for detecting distributed denial of service attacks: A comprehensive review, challenges and future directions

机译:用于检测分布式拒绝服务攻击的分布式框架:全面的审查,挑战和未来方向

获取原文
获取原文并翻译 | 示例

摘要

A distributed denial of service (DDoS) attack is a significant threat to web-based applications and hindering legitimate traffic (denies access to benign users) by overwhelming the victim system or its infrastructure (service, bandwidth, networking devices, etc.) with a large volume of attack traffic. It leads to a delay in responses or sometimes a crash victim system. Even a few moments of pause in web-based applications lead to a huge monetary loss and a bad reputation in the market. Several approaches available in the literature to protect websites from different types of DDoS attacks. However, incidents and volume sizes of DDoS attacks are growing quarter by quarter. Further, various challenges in the traditional framework based defense mechanisms: itself becoming a victim of attacks while analyzing a massive amount of traffic, require more time for detection process, no coordination among the modules, etc. This paper presents a comprehensive DDoS defense deployment taxonomy and critically reviewed existing distributed frameworks based DDoS attack detection systems. Further, characterized several existing distributed processing frameworks to select an appropriate one for deploying DDoS attack detection mechanisms. Finally, several evaluation metrics, open issues, discussion on available datasets including their limitations, and future directions are presented.
机译:分布式拒绝服务(DDOS)攻击是对基于Web的应用程序的重大威胁,并通过压倒受害者系统或其基础架构(服务,带宽,网络设备等)来妨碍合法的合法流量(拒绝访问良性用户)大量的攻击交通。它导致响应延迟或有时崩溃受害者系统。即使在基于网络的申请中暂停的几点暂停,导致了巨大的货币损失和市场的糟糕声誉。文献中提供了几种方法,可以保护来自不同类型的DDOS攻击的网站。然而,DDOS攻击的事件和体积大小逐季度增长。此外,在传统的基于框架的防御机制中的各种挑战:自身成为分析大量交通的攻击的受害者,需要更多的检测过程时间,模块之间没有协调等。本文提出了一个全面的DDOS防御部署分类并批评了基于DDOS攻击检测系统的现有分布式框架。此外,表征了几个现有的分布式处理框架,以选择适当的分布式处理框架,用于部署DDOS攻击检测机制。最后,提出了几个评估指标,开放问题,就可用数据集的讨论,包括其限制,以及未来的指示。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号