Simulation-Based Study of Distributed Denial of Service Attacks Prevention in the Cloud

被引:4
作者
Alosaimi, Wael [1 ]
Alshamrani, Mazin [1 ]
Al-Begain, Khalid [1 ]
机构
[1] Univ South Wales, Fac Comp Engn & Sci, Pontypridd, M Glam, Wales
来源
2015 9TH INTERNATIONAL CONFERENCE ON NEXT GENERATION MOBILE APPLICATIONS, SERVICES AND TECHNOLOGIES (NGMAST 2015) | 2015年
关键词
cloud computing; Distributed Denial of Service attacks; DDoS; Economical Denial of Sustainability; EDoS; DEFENSE-MECHANISMS;
D O I
10.1109/NGMAST.2015.50
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Distributed Denial of Service (DDoS) attacks can affect the availability of the networks. In the age of cloud computing, these attacks are being more harmful in terms of their common influences and their new effects that harm the cloud sustainability by exploiting its scalability and payment model (pay-as-you-use). Therefore, a new form of DDoS attacks is introduced in the cloud context as an economical version of such attack. This new form is known as Economical Denial of Sustainability (EDoS) attack. To counteract such attacks, traditional network security means are used. Specifically, the firewalls that are working as filters for the incoming packets to the targeted network according to designated rules by the administrators can mitigate the impacts of DDoS and EDoS attacks. In this paper, a new solution called Enhanced DDoS-Mitigation System (Enhanced DDoS-MS) is proposed to encounter these attacks by utilizing the firewall capabilities in controlling a verification process to protect the targeted system. These capabilities are evaluated in a simulation environment. The results proved that the firewall mitigates the DDoS impacts successfully by improving the provided services to the users in terms of the response time and server load under attack. The study also suggests following implementation for the proposed framework with an active testbed.
引用
收藏
页码:60 / 65
页数:6
相关论文
共 50 条
[41]   ANALYSIS AND EVALUATION OF DISTRIBUTED DENIAL OF SERVICE ATTACKS IDENTIFICATION METHODS [J].
Grusnys, Saulius ;
Lagzdinyte, Ingrida .
INFORMATION TECHNOLOGIES' 2010, 2010, :183-188
[42]   Mitigation Services on SDN for Distributed Denial of Service and Denial of Service Attacks Using Machine Learning Techniques [J].
Ramprasath, J. ;
Krishnaraj, N. ;
Seethalakshmi, V. .
IETE JOURNAL OF RESEARCH, 2024, 70 (01) :70-81
[43]   Detection of Distributed Denial of Service Attacks in Software Defined Networks [J].
Barki, Lohit ;
Shidling, Amrit ;
Meti, Nisharani ;
Narayan, D. G. ;
Mulla, Mohammed Moin .
2016 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2016, :2576-2581
[44]   Defending against Distributed Denial of Service Attacks: Issues and Challenges [J].
Gupta, B. B. ;
Joshi, R. C. ;
Misra, Manoj .
INFORMATION SECURITY JOURNAL, 2009, 18 (05) :224-247
[45]   Inferring distributed reflection denial of service attacks from darknet [J].
Fachkha, Claude ;
Bou-Harb, Elias ;
Debbabi, Mourad .
COMPUTER COMMUNICATIONS, 2015, 62 :59-71
[46]   A Proposal of a Simulation-based Approach for Service Level Agreement in Cloud [J].
Rak, Massimiliano ;
Cuomo, Antonio ;
Villano, Umberto .
2013 IEEE 27TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS WORKSHOPS (WAINA), 2013, :1235-1240
[47]   Proactive Intrusion Detection and Distributed Denial of Service Attacks - A Case Study in Security Management [J].
Cabrera J.B.D. ;
Lewis L. ;
Qin X. ;
Lee W. ;
Mehra R.K. .
Journal of Network and Systems Management, 2002, 10 (02) :225-254
[48]   Rule-based Defense mechanism against distributed denial-of-service attacks [J].
Kim, Sung-ju ;
Kim, Byung-chul ;
Lee, Jae-yong ;
Hwang, Chan-kyou ;
Lee, Jae-jin .
WORLD CONGRESS ON ENGINEERING 2008, VOLS I-II, 2008, :543-+
[49]   Chaotic Theory based Defensive Mechanism against Distributed Denial of Service Attack in Cloud Computing Environment [J].
Iyengar, N. Ch. S. N. ;
Ganapathy, Gopinath .
INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (09) :197-211
[50]   Majority Vote-Based Ensemble Approach for Distributed Denial of Service Attack Detection in Cloud Computing [J].
Alqarni A.A. .
Journal of Cyber Security and Mobility, 2022, 11 (02) :265-278