Programmable traffic monitoring method based on active network techniques and application to DDoS detection

被引:0
作者
Hasegawa, T [1 ]
Ano, S
Kubota, F
机构
[1] KDDI R&D Labs, Kamifukuoka, Saitama 3568502, Japan
[2] Commun Res Labs, Koganei, Tokyo 2848795, Japan
关键词
active network; traffic monitor; network management; DDoS;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
As the Internet has become the infrastructure for the global communication, the quality degradation due to network failures and illegal traffic such as DDoS (Distributed Denial of Service) have become a serious problem. In order to solve the problem, a network monitoring system that monitors the traffic of Internet in real time is strongly desired. Traffic monitors that collect the statistics from captured packets play a key roll in the system; however, they are not flexible enough for being used in the rapidly changing Internet. The traditional approach such that a new traffic monitor is developed for a new requirement results in a long turn around time of the development. Therefore, we have proposed a flexible network monitoring system that consists of programmable traffic monitors. Traffic monitors are made programmable by introducing active network techniques; therefore, we call the network monitoring system as the programmable monitor network. This paper describes the implementation of the programmable monitor network and its application to DDoS (Distributed Denial of Service) attack detection.
引用
收藏
页码:1890 / 1899
页数:10
相关论文
共 20 条
  • [1] The SwitchWare active network architecture
    Alexander, DS
    Arbaugh, WA
    Hicks, MW
    Kakkar, P
    Keromytis, AD
    Moore, JT
    Gunter, CA
    Nettles, SM
    Smith, JM
    [J]. IEEE NETWORK, 1998, 12 (03): : 29 - 36
  • [2] Ano S, 2002, PROCEEDINGS OF THE IASTED INTERNATIONAL CONFERENCE ON COMMUNICATIONS, INTERNET, AND INFORMATION TECHNOLOGY, P118
  • [3] ANO S, 2002, PASSIVE ACTIVE MEASU
  • [4] [Anonymous], 2001, ACM
  • [5] [Anonymous], 2000, P 2000 ACM SIGCOMM C
  • [6] BROWNLEE N, NETRAMET HOMEPAGE
  • [7] *CISC SYST INC, NETFL FLOWC HOM
  • [8] HASEGAWA T, 2001, P IWAN 0U, P49
  • [9] Dealing with denial-of-service attacks in agent-enabled active and programmable infrastructures
    Karnouskos, S
    [J]. 25TH ANNUAL INTERNATIONAL COMPUTER SOFTWARE & APPLICATIONS CONFERENCE, 2001, : 445 - 450
  • [10] Kashiwa D, 2002, IEICE T INF SYST, VE85D, P1918