On the impact of DoS attacks on Internet traffic characteristics and QoS

被引:13
作者
Owezarski, P [1 ]
机构
[1] CNRS, LAAS, F-31077 Toulouse 4, France
来源
ICCCN 2005: 14TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS, PROCEEDINGS | 2005年
关键词
Internet monitoring; traffic characterization; DoS attacks; QoS;
D O I
10.1109/ICCCN.2005.1523865
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet is on the way of becoming the universal communication network, and then needs to provide various services with guaranteed quality for all kinds of applications. Denial of Service (DoS) attacks are then more efficient in a guaranteed multi-services network than in the "old" best effort Internet. Indeed, with best effort services, a DoS attack has to forbid the target of the attack to communicate. With a multi-services network, it is sufficient to make the network not respect the SLA (Service Level Agreement) committed with clients, what is easier and can be performed using simple flooding attacks. Then, the question is: how does a DoS attack impact the quality of set-vice (QoS) of a network given that networks are hugely over-provisioned, and that DoS attacks never succeed to completely overflow these high speed networks? This paper aims at answering this question as we do believe that it can help for defending the network against such attacks. The analysis of DoS attacks has been performed using traffic monitoring tools on the Internet. In particular, the analysis of attacks shows that they are increasing long range dependence (LRD) in the traffic, breaking the invariant power laws of normal Internet traffic. It is also explained in the paper, based on some normal traffic traces characterization and analysis why LRD is such a bad parameter for having good QoS.
引用
收藏
页码:269 / 274
页数:6
相关论文
共 17 条
[1]   Wavelet analysis of long-range-dependent traffic [J].
Abry, P ;
Veitch, D .
IEEE TRANSACTIONS ON INFORMATION THEORY, 1998, 44 (01) :2-15
[2]  
[Anonymous], 1998, Journal of Time Series Analysis, DOI DOI 10.1111/1467-9892.00090
[3]  
BARABASI A, 2000, PHYS A
[4]  
CLEARY J, 2000, PASSIVE ACTIVE MEASU
[5]   Experimental queueing analysis with long-range dependent packet traffic [J].
Erramilli, A ;
Narayan, O ;
Willinger, W .
IEEE-ACM TRANSACTIONS ON NETWORKING, 1996, 4 (02) :209-223
[6]  
FELDMANN A, 1998, P ACM SIGCOMM 98 VAN
[7]  
HUSSAIN A, 2003, ACM SIGCOMM C
[8]  
JIN S, 2004, IEEE INT C COMM ICC
[9]  
LARRIEU N, 2005, 9 IFIP IEEE INT S IN
[10]  
LELAND W, 1993, ACM SIGCOM SEPT