Multi-Agent pattern recognition mechanism for detecting distributed denial of service attacks

被引:9
作者
Baig, Z. A. [1 ]
Salah, K. [2 ]
机构
[1] King Fahd Univ Petr & Minerals, Dept Comp Engn, Dhahran 31261, Saudi Arabia
[2] King Fahd Univ Petr & Minerals, Dept Informat & Comp Sci, Dhahran 31261, Saudi Arabia
关键词
SCHEME;
D O I
10.1049/iet-ifs.2009.0255
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Distributed denial of service (DDoS) attacks pose a significant threat to the smooth operations of today's online critical services and applications. Existing mechanisms to detect these attacks have had limited success. With the rapid growth in size and bandwidth of contemporary computer networks, an efficient and effective distributed solution is needed for detecting DDoS attacks. In this study, the authors propose a multiagent pattern recognition mechanism for detecting DDoS attacks, in adistributed fashion. Our proposed solution is very effective in detecting such attacks launched against victim servers residing inside a production network which has multiple gateways to the Internet. Using simulation, the authors show that our proposed mechanism achieves a high degree of accuracy in detecting DDoS attacks, with low false alarm rates, using a reasonable numbers of attack detection agents collaboratively operating in a typical production network. The authors also study the relationship of the number of agents participating in the attack detection process and the false alarm rate of the detection scheme.
引用
收藏
页码:333 / 343
页数:11
相关论文
共 26 条
[1]  
[Anonymous], 2003, 2003 C APPL TECHNOLO, P99, DOI 10.1145/863955.863968
[2]  
[Anonymous], 2001, SPRINGER SERIES INFO, DOI DOI 10.1007/978-3-642-56927-2
[3]  
Baig Z. A., 2008, THESIS MONASH U AUST
[4]  
Carpenter G.A., 1998, ADAPTIVE RESONANCE T, P79
[5]   Random key predistribution schemes for sensor networks [J].
Chan, HW ;
Perrig, A ;
Song, D .
2003 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2003, :197-213
[6]  
CHANG R, 2004, IEEE COMMUN MAG, V40, P42
[7]   Collaborative detection of DDoS attacks over multiple network domains [J].
Chen, Yu ;
Hwang, Kai ;
Ku, Wei-Shinn .
IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2007, 18 (12) :1649-1662
[8]  
Du WL, 2004, IEEE INFOCOM SER, P586
[9]  
ELLIOTT J, 2000, IT PROFESSIONAL, V2, P55
[10]  
Eschenauer L., 2002, ACM CCS2002, DOI DOI 10.1145/586110.586117