Middleware-based approach for preventing distributed deny of service attacks

被引:0
|
作者
Wei, Y [1 ]
Dong, Y [1 ]
Wei, Z [1 ]
机构
[1] Texas A&M Univ, Dept Comp Sci, College Stn, TX 77843 USA
来源
2002 MILCOM PROCEEDINGS, VOLS 1 AND 2: GLOBAL INFORMATION GRID - ENABLING TRANSFORMATION THROUGH 21ST CENTURY COMMUNICATIONS | 2002年
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
In this paper, we extend our previous study on VPOE (Virtual Private Operation Environment) to provide the DDOS (distributed deny of service) prevention service in a distributed heterogeneous environment. We introduce our integrated middleware-based defense system to support this service with studying two important components middleware box and domain agent. Our technology includes the following: (1) We adopt network-based middlewares. The network-based middleware is realized by special devices inserted in various locations of the network. Middlewares in the system cooperate to achieve the defense mission objectives. (2) We take the generic primitive and role-based approaches. With the network primitives, middlewares are programmable entities and can change their roles during the system run-time according to the system defense requirements. (3) We take the generic signaling strategy. With the generic signaling control protocols, middlewares can cooperate with each other effectively to achieve the high defense performance globally. There are several advantages with our approach: (1) Middlewares provide transparent services to applications and make our solution both upward and downward compatible. Thus, our technology can be easily deployed with the current computing and communication infrastructure. (2) Our solution is highly efficient. By using the generic middleware box control protocols and network primitives, the middleware boxes can cooperatively share the countermeasure information and easily change their roles run-time to efficiently prevent DDOS attack. In this sense, our defense system can adaptively deploy the defense strategy according to the dynamic network attack situation. As a result, our technology is effective and can be used in a large system.
引用
收藏
页码:1124 / 1129
页数:6
相关论文
共 50 条
  • [1] Middleware-based distributed heterogeneous simulation
    Bruce-Boye, Cecil
    Kazakov, Dmitry A.
    Colmorgen, Helge
    zum Beck, Ruediger
    Hassan, Jehan Z.
    Wojtkowiak, Harald
    NOVEL ALGORITHMS AND TECHNIQUES IN TELECOMMUNICATIONS AND NETWORKING, 2010, : 333 - 337
  • [2] A middleware-based approach to database caching
    Buehmann, Andreas
    Haerder, Theo
    Merker, Christian
    ADVANCES IN DATABASES AND INFORMATION SYSTEMS, PROCEEDINGS, 2006, 4152 : 184 - 199
  • [3] A middleware-based service for emplqying resource management algorithms at distributed networks and evaluating their performance
    Stathopoulos, VM
    Venieris, IS
    ISCC2004: NINTH INTERNATIONAL SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, VOLS 1 AND 2, PROCEEDINGS, 2004, : 1117 - 1122
  • [4] An object model framework for middleware-based distributed systems
    Kahkipuro, P
    DISTRIBUTED APPLICATIONS AND INTEROPERABLE SYSTEMS, 1997, : 201 - 207
  • [5] Middleware-based Model for Dynamic Reconfiguration of Web Service
    Ilahi, Rahmat
    Admodisastro, Novia
    Ali, Norhayati Mohd
    Sultan, Abu Bakar Md
    INTERNATIONAL JOURNAL OF GRID AND DISTRIBUTED COMPUTING, 2018, 11 (03): : 89 - 97
  • [6] A middleware-based approach to model refactoring at runtime
    Lan, Ling
    Huang, Gang
    Wang, Weihu
    Mei, Hong
    14TH ASIA-PACIFIC SOFTWARE ENGINEERING CONFERENCE, PROCEEDINGS, 2007, : 246 - +
  • [7] Supporting dependable distributed applications through a component-oriented middleware-based group service
    Saikoski, K
    Coulson, G
    ARCHITECTING DEPENDABLE SYSTEMS II, 2004, 3069 : 99 - 119
  • [8] A Middleware-Based Approach for Heterogeneous Wireless Sensor Networks
    Graziosi, F.
    Pomante, L.
    Pacifico, D.
    PROCEEDINGS OF THE 12TH WSEAS INTERNATIONAL CONFERENCE ON COMMUNICATIONS: NEW ASPECTS OF COMMUNICATIONS, 2008, : 52 - +
  • [9] Building test constraints for testing middleware-based distributed systems
    Chen, J
    SOFTWARE ENGINEERING AND MIDDLEWARE, 2003, 2596 : 216 - 232
  • [10] Distributed heterogeneous inspecting system and its middleware-based solution
    Huang Li-can
    Wu Zhao-hui
    Pan Yun-he
    Journal of Zhejiang University-SCIENCE A, 2003, 4 (5): : 542 - 548