A adaptive filtration based defense framework against DDoS

被引:0
|
作者
Zhang, Jian [1 ]
Zhou, Xiaxia [1 ]
Zhang, Wei [1 ]
Liang, Qidi [1 ]
Xiang, Fengtao [2 ]
机构
[1] Cent S Univ, Sch Informat Sci & Engn, Changsha, Hunan, Peoples R China
[2] Natl Univ Def Technol, Coll Mechatron Engn & Automat, Changsha, Hunan, Peoples R China
基金
中国国家自然科学基金;
关键词
DDoS; Spark Streaming; Spark; HBase; CUSUM; ATTACKS;
D O I
10.1109/ISPA/IUCC.2017.00113
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
While increasing cloud services are exposed to DDoS, DDoS defense has becoming more and more challenging. A single server with limited computing and memory resource can hardly handle large packet traces which are captured on fast links. In this paper, we propose a spark-streaming based online DDoS defense framework. First, we present a analysis model to identify abnormal packets. Second, we develop a defense model based on the statistics of abnormal packets. Our framework has two main advantages: (1) Our framework is configurable and with expert system functionality; the information maintained to detect threats is also leveraged during mitigation to effectively distinguishing legitimate from suspicious traffic; (2) Based on spark-streaming, our framework allows for parallel and distributed traffic analysis that can be deployed at high-speed network links. At the same time, by employing improved bloom-filter for approximated checks with low false positive/negative errors, it also reduces the space required to maintain the information leveraged for the threat detection and mitigation. The evaluation with data sets derived from real network traffic validates the performance of our framework in terms of detection accuracy, filtering efficiency, and monitoring overhead. The experiments show that our framework is able to detect DDoS attacks in the early stage of attack, to mitigate them by filtering out the majority of the abnormal packets while keeping a high percentage of the legitimate traffic unaffected.
引用
收藏
页码:729 / 736
页数:8
相关论文
共 50 条
  • [1] A framework for a collaborative DDoS defense
    Oikonomou, George
    Mirkovic, Jelena
    Reiher, Peter
    Robinson, Max
    22ND ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 2006, : 33 - +
  • [2] SDNShield: NFV-Based Defense Framework Against DDoS Attacks on SDN Control Plane
    Chen, Kuan-Yin
    Liu, Sen
    Xu, Yang
    Siddhrau, Ishant Kumar
    Zhou, Siyu
    Guo, Zehua
    Chao, H. Jonathan
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2022, 30 (01) : 1 - 17
  • [3] On an Integrated Security Framework for Defense Against Various DDoS Attacks in SDN
    Wu, Hao
    Hou, Aiqin
    Nie, Weike
    Wu, Chase
    2023 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS, ICNC, 2023, : 311 - 317
  • [4] A distributed defense framework for flooding-based DDoS attacks
    You, Yonghua
    Zulkernine, Mohammad
    Haque, Anwar
    ARES 2008: PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON AVAILABILITY, SECURITY AND RELIABILITY, 2008, : 245 - +
  • [5] STONE: A streaming DDoS defense framework
    Gulisano, Vincenzo
    Callau-Zori, Mar
    Fu, Zhang
    Jimenez-Peris, Ricardo
    Papatriantafilou, Marina
    Patino-Martinez, Marta
    EXPERT SYSTEMS WITH APPLICATIONS, 2015, 42 (24) : 9620 - 9633
  • [6] A Distributed Collaborative Entrance Defense Framework Against DDoS Attacks on Satellite Internet
    Guo, Wei
    Xu, Jin
    Pei, Yukui
    Yin, Liuguo
    Jiang, Chunxiao
    Ge, Ning
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (17) : 15497 - 15510
  • [7] Unified defense against DDoS attacks
    Muthuprasanna, M.
    Manimaran, C.
    Wang, Z.
    NETWORKING 2007: AD HOC AND SENSOR NETWORKS, WIRELESS NETWORKS, NEXT GENERATION INTERNET, PROCEEDINGS, 2007, 4479 : 1047 - +
  • [8] Investigation of cooperative defense against DDOS
    Kotenko, Igor
    Ulanov, Alexander
    SECRYPT 2007: PROCEEDINGS OF THE SECOND INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2007, : 180 - 183
  • [9] Securing IIoT systems against DDoS attacks with adaptive moving target defense strategies
    Swati
    Roy, Sangita
    Singh, Jawar
    Mathew, Jimson
    SCIENTIFIC REPORTS, 2025, 15 (01):
  • [10] DG-based active defense strategy to defend against DDoS
    Guo, Rui
    Chang, Guiran
    Qin, Yuhai
    Sun, Baojing
    Liu, An
    Zhang, Bencheng
    Peng, Dan
    MUE: 2008 INTERNATIONAL CONFERENCE ON MULTIMEDIA AND UBIQUITOUS ENGINEERING, PROCEEDINGS, 2008, : 191 - +