On Implementation of Efficient Inline DDoS Detector Based on AATAC Algorithm

被引:1
作者
Wisniewski, Piotr [1 ]
Sosnowski, Maciej [1 ]
Burakowski, Wojciech [1 ]
机构
[1] Warsaw Univ Technol, Inst Telecommun, Warsaw, Poland
关键词
DDoS; Distributed Denial of Service; traffic anomaly detection; AATAC; performance; DPDK;
D O I
10.24425/ijet.2022.143899
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Distributed Denial of Service (DDoS) attacks constitute a major threat in the current Internet. These cyber-attacks aim to flood the target system with tailored malicious network traffic overwhelming its service capacity and consequently severely limiting legitimate users from using the service. This paper builds on the state-of-the-art AATAC algorithm (Autonomous Algorithm for Traffic Anomaly Detection) and provides a concept of a dedicated inline DDoS detector capable of real-time monitoring of network traffic and near-real-time anomaly detection.The inline DDoS detector consists of two main elements: 1) inline probe(s) responsible for link-rate real-time processing and monitoring of network traffic with custom-built packet feature counters, and 2) an analyser that performs the near-real-time statistical analysis of these counters for anomaly detection. These elements communicate asynchronously via the Redis database, facilitating a wide range of deployment scenarios. The inline probes are based on COTS servers and utilise the DPDK framework (Data Plane Development Kit) and parallel packet processing on multiple CPU cores to achieve link rate traffic analysis, including tailored DPI analysis.
引用
收藏
页码:889 / 898
页数:10
相关论文
共 50 条
[41]   An Efficient Interval Query Algorithm Based on Inverted List in Cloud Environment [J].
Wang, Zhiqiong ;
Gong, Ke ;
Jin, Shikai ;
Li, Wenjun ;
Liu, Zixi .
PROCEEDING OF THE IEEE INTERNATIONAL CONFERENCE ON INFORMATION AND AUTOMATION, 2012, :221-225
[42]   A clustering algorithm based on jet algorithms for cross-talk events in neutron detector arrays [J].
Dogangun, O. ;
Ozok, F. ;
Dundar, U. ;
Erduran, M. N. .
JOURNAL OF INSTRUMENTATION, 2022, 17 (11)
[43]   Efficient binary descriptor-based implementation of fuzzy image registration algorithms on LabVIEW [J].
Lati, Abdelhai ;
Belhocine, Mahmoud ;
Chaa, Mourad ;
Achour, Nouara .
JOURNAL OF ELECTRONIC IMAGING, 2021, 30 (05)
[44]   Efficient CFD code implementation for the ARM-based Mont-Blanc architecture [J].
Oyarzun, G. ;
Borrell, R. ;
Gorobets, A. ;
Mantovani, F. ;
Oliva, A. .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 79 :786-796
[45]   FPGA-Based Implementation of an Optimization Algorithm to Maximize the Productivity of a Microbial Electrolysis Cell [J].
De Jesus Colin-Robles, Jose ;
Torres-Zuniga, Ixbalank ;
Ibarra-Manzano, Mario A. ;
Alcaraz-Gonzalez, Victor .
PROCESSES, 2021, 9 (07)
[46]   Efficient hybrid algorithm based on moth search and fireworks algorithm for solving numerical and constrained engineering optimization problems [J].
Han, Xiaoxia ;
Yue, Lin ;
Dong, Yingchao ;
Xu, Quanxi ;
Xie, Gang ;
Xu, Xinying .
JOURNAL OF SUPERCOMPUTING, 2020, 76 (12) :9404-9429
[47]   Efficient and merged biogeography-based optimization algorithm for global optimization problems [J].
Zhang, Xinming ;
Kang, Qiang ;
Tu, Qiang ;
Cheng, Jinfeng ;
Wang, Xia .
SOFT COMPUTING, 2019, 23 (12) :4483-4502
[48]   RUN beyond the metaphor: An efficient optimization algorithm based on Runge Kutta method [J].
Ahmadianfar, Iman ;
Heidari, Ali Asghar ;
Gandomi, Amir H. ;
Chu, Xuefeng ;
Chen, Huiling .
EXPERT SYSTEMS WITH APPLICATIONS, 2021, 181
[49]   An efficient optimization approach for designing machine learning models based on genetic algorithm [J].
Hamdia, Khader M. ;
Zhuang, Xiaoying ;
Rabczuk, Timon .
NEURAL COMPUTING & APPLICATIONS, 2021, 33 (06) :1923-1933
[50]   A Boosted 3-D PCA Algorithm Based on Efficient Analysis Method [J].
Lee, Kyung-Min ;
Lin, Chi-Ho .
APPLIED SCIENCES-BASEL, 2021, 11 (16)