首页> 外文期刊>Simulation >On the Design and Performance of an Adaptive, Global Strategy for Detecting and Mitigating Distributed DoS Attacks in GRID and Collaborative Workflow Environments
【24h】

On the Design and Performance of an Adaptive, Global Strategy for Detecting and Mitigating Distributed DoS Attacks in GRID and Collaborative Workflow Environments

机译:GRID和协作工作流环境中用于检测和缓解分布式DoS攻击的自适应全局策略的设计和性能

获取原文
获取原文并翻译 | 示例
       

摘要

While intrusion detection systems have seen a great deal of commercialization in recent years, these products are not geared towards environments, which require support for high-performance applications and open access policy for collaboration. A second limitation of existing intrusion detection systems is their lack of flexibility to deal with the ever-evolving characteristics of the attacks, in terms of diversity and intensity. Moreover, applications in high-performance collaborative environments are very diverse, with possible extreme performance requirements. Consequently, effective strategies to detect attacks in these environments strongly depend on how closely the underlying intrusion detection mechanisms reflect the "specifics" of the application. The focus of this paper is on secure GRID and workflow environments. The purpose is to investigate a distributed defense method that can secure collaborative GRID and workflow environments and neutralize attacks before they reach their potential target en mass. To this end, the paper proposes a progressive, globally deployable sentinel scheme for data sampling, packet inspection, and DoS attack detection and recovery. A simulation framework is developed to study the performance of the proposed scheme. The results show a significant improvement in how the network deals with DoS attacks to secure GRID and workflow environments, in comparison to local DoS detection and prevention schemes.
机译:尽管近年来入侵检测系统已经实现了许多商业化,但这些产品并不适合要求高性能的应用程序支持和开放访问策略进行协作的环境。现有入侵检测系统的第二个局限性是它们缺乏灵活性,无法应对多样性和强度方面不断变化的攻击特征。此外,高性能协作环境中的应用程序非常多样化,可能会有极端的性能要求。因此,在这些环境中检测攻击的有效策略在很大程度上取决于基础的入侵检测机制反映应用程序“细节”的程度。本文的重点是安全的GRID和工作流环境。目的是研究一种分布式防御方法,该方法可以保护协作GRID和工作流环境并在攻击整体达到其潜在目标之前抵消攻击。为此,本文提出了一种渐进的,可全局部署的哨兵方案,用于数据采样,数据包检查以及DoS攻击检测和恢复。仿真框架被开发来研究所提出的方案的性能。结果表明,与本地DoS检测和预防方案相比,网络在处理DoS攻击以确保GRID和工作流环境安全方面有了显着改善。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号