A adaptive filtration based defense framework against DDoS

被引:0
|
作者
Zhang, Jian [1 ]
Zhou, Xiaxia [1 ]
Zhang, Wei [1 ]
Liang, Qidi [1 ]
Xiang, Fengtao [2 ]
机构
[1] Cent S Univ, Sch Informat Sci & Engn, Changsha, Hunan, Peoples R China
[2] Natl Univ Def Technol, Coll Mechatron Engn & Automat, Changsha, Hunan, Peoples R China
基金
中国国家自然科学基金;
关键词
DDoS; Spark Streaming; Spark; HBase; CUSUM; ATTACKS;
D O I
10.1109/ISPA/IUCC.2017.00113
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
While increasing cloud services are exposed to DDoS, DDoS defense has becoming more and more challenging. A single server with limited computing and memory resource can hardly handle large packet traces which are captured on fast links. In this paper, we propose a spark-streaming based online DDoS defense framework. First, we present a analysis model to identify abnormal packets. Second, we develop a defense model based on the statistics of abnormal packets. Our framework has two main advantages: (1) Our framework is configurable and with expert system functionality; the information maintained to detect threats is also leveraged during mitigation to effectively distinguishing legitimate from suspicious traffic; (2) Based on spark-streaming, our framework allows for parallel and distributed traffic analysis that can be deployed at high-speed network links. At the same time, by employing improved bloom-filter for approximated checks with low false positive/negative errors, it also reduces the space required to maintain the information leveraged for the threat detection and mitigation. The evaluation with data sets derived from real network traffic validates the performance of our framework in terms of detection accuracy, filtering efficiency, and monitoring overhead. The experiments show that our framework is able to detect DDoS attacks in the early stage of attack, to mitigate them by filtering out the majority of the abnormal packets while keeping a high percentage of the legitimate traffic unaffected.
引用
收藏
页码:729 / 736
页数:8
相关论文
共 50 条
  • [31] A SPL Framework for Adaptive Deception-based Defense
    De Faveri, Cristiano
    Moreira, Ana
    PROCEEDINGS OF THE 51ST ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES (HICSS), 2018, : 5542 - 5551
  • [32] Trilateral Trust Based Defense Mechanism against DDoS Attacks in Cloud Computing Environment
    Iyengar, N. Ch. S. N.
    Ganapathy, Gopinath
    CYBERNETICS AND INFORMATION TECHNOLOGIES, 2015, 15 (02) : 119 - 140
  • [33] A Hybrid Lightweight Defense System Against Address Spoofing Based DDoS Attacks in SDN
    Sinha, Mitali
    Bera, Padmalochan
    Satpathy, Manoranjan
    Sahoo, Kshira Sagar
    SECURITY AND PRIVACY, 2025, 8 (02):
  • [34] Poster: ML-Pushback: Machine Learning Based Pushback Defense Against DDoS
    Mi, Yu
    Wang, An
    CONEXT'19 COMPANION: PROCEEDINGS OF THE 15TH INTERNATIONAL CONFERENCE ON EMERGING NETWORKING EXPERIMENTS AND TECHNOLOGIES, 2019, : 80 - 81
  • [35] SkyShield: A Sketch-Based Defense System Against Application Layer DDoS Attacks
    Wang, Chenxu
    Miu, Tony T. N.
    Luo, Xiapu
    Wang, Jinhe
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (03) : 559 - 573
  • [36] An Adaptive Approach for Defending against DDoS Attacks
    Li, Muhai
    Li, Ming
    MATHEMATICAL PROBLEMS IN ENGINEERING, 2010, 2010
  • [37] ERINDA: A novel framework for Enhancing the Resilience of Industrial Networks against DDoS Attacks with adaptive recovery
    Alrumaih, Thuraya N. I.
    Alenazi, Mohammed J. F.
    ALEXANDRIA ENGINEERING JOURNAL, 2025, 121 : 248 - 262
  • [38] A Real-Time Visualization Defense Framework for DDoS Attack
    Jin, Yiqiao
    Liang, Qidi
    Zhang, Jian
    Jin, Ou
    DATA SCIENCE, PT 1, 2017, 727 : 341 - 351
  • [39] DDoS attack Defense Framework for Cloud using Fog Computing
    Deepali
    Bhushan, Kriti
    2017 2ND IEEE INTERNATIONAL CONFERENCE ON RECENT TRENDS IN ELECTRONICS, INFORMATION & COMMUNICATION TECHNOLOGY (RTEICT), 2017, : 534 - 538
  • [40] A New Framework for DDoS Attack Detection and Defense in SDN Environment
    Tan, Liang
    Pan, Yue
    Wu, Jing
    Zhou, Jianguo
    Jiang, Hao
    Deng, Yuchuan
    IEEE ACCESS, 2020, 8 : 161908 - 161919