Intrusion Detection Systems' Performance for Distributed Denial-of-Service Attack

被引:0
作者
de Sousa Araujo, Tiago Emilio [1 ]
Matos, Fernando Menezes [1 ]
Moreira, Josilene Aires [1 ]
机构
[1] Univ Fed Paraiba UFPB, Ctr Informat, Programa Posgrad Informat, Joao Pessoa, Paraiba, Brazil
来源
2017 CHILEAN CONFERENCE ON ELECTRICAL, ELECTRONICS ENGINEERING, INFORMATION AND COMMUNICATION TECHNOLOGIES (CHILECON) | 2017年
关键词
DDoS attack; Intrusion detection systems; IDS performance; network security;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Intrusion Detection Systems (IDSs) are signature-based software tools that provide mechanisms for detection and analysis of network intrusions. Using an experimental scenario and real traffic collected at a higher education institution in Brazil, we evaluate the performance of Snort and Suricata IDSs for detection of current Distributed Denial-of-Services attack (Slowloris). Our study has found the IDS Suricata is not a suitable number for alerts to catch the attention of the network manager about the Slowloris attack, while Snort IDS does. Evaluation of CPU consumption and memory of target server. In addition, an analysis of offline traffic reveals that the higher education institution is under DDoS attacks during the analyzed period.
引用
收藏
页数:6
相关论文
共 23 条
[1]  
Ackerman S., 2016, The Guardian
[2]  
Albin E., 2012, 2012 IEEE Workshops of International Conference on Advanced Information Networking and Applications (WAINA), P122, DOI 10.1109/WAINA.2012.29
[3]  
[Anonymous], CISC VIS NETW IND VN
[4]   Analyzing well-known countermeasures against distributed denial of service attacks [J].
Beitollahi, Hakem ;
Deconinck, Geert .
COMPUTER COMMUNICATIONS, 2012, 35 (11) :1312-1332
[5]  
Caruso L. C. M., 2005, THESIS, P25
[6]  
Dantas Yuri Gil, 2014, INT SEC INF C JISIC
[7]  
Durcekova V., 2012, 2012 Proceedings of the 9th Conference of ELEKTRO (ELEKTRO 2012), P55, DOI 10.1109/ELEKTRO.2012.6225571
[8]  
Hogue N., 2014, J NETWORK COMPUTER A
[9]  
Idatalabs, 2016, COMP US SNORT
[10]  
Khamphakdee N., 2015, J ICT RES APPL