Reducing DDoS Attacks impact using a Hybrid Cloud-Based Firewalling Architecture

被引:0
作者
Guenane, Fouad [1 ]
Nogueira, Michele [2 ]
Pujolle, Guy [1 ]
机构
[1] Univ Paris 06, Sorbonne Univ, UMR 7606, LIP6, F-75005 Paris, France
[2] Univ Fed Parana, NR2, BR-80060000 Curitiba, Parana, Brazil
来源
2014 GLOBAL INFORMATION INFRASTRUCTURE AND NETWORKING SYMPOSIUM (GIIS) | 2014年
关键词
Security as a Service; DDoS; Mitigation; Hybrid; Cloud Based Architecture; Firewall; Network security;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
A Distributed Denial-of-Service attack is an attempt to prevent legitimate users from accessing information or services. In fact, it is a battle of resources between the defender and the attacker. Hence, in order to deal with the denial of services, the proposed mitigation tools are mainly based on the philosophy of Cloud computing which relies on sharing resources. In fact, it offers numerous resources, with high availability and performances. This concept provides us with a new way to cope with DDoS attacks. Cloud computing offered IT resources as services which are more affordable, flexible and attractive to business. Therefore, we present a DDoS attack mitigation service supported by an efficient and hybrid cloud based architecture. It uses the flexibility and the availability of the Cloud, as well as the support of traditional firewalls and intrusion detection systems, to cope with massive unanticipated volumes of traffic in order to improve their performance dynamically and on demand.
引用
收藏
页数:6
相关论文
共 14 条
[1]  
[Anonymous], 2003, NETWORK SECURITY, V2003, p12
[2]   A View of Cloud Computing [J].
Armbrust, Michael ;
Fox, Armando ;
Griffith, Rean ;
Joseph, Anthony D. ;
Katz, Randy ;
Konwinski, Andy ;
Lee, Gunho ;
Patterson, David ;
Rabkin, Ariel ;
Stoica, Ion ;
Zaharia, Matei .
COMMUNICATIONS OF THE ACM, 2010, 53 (04) :50-58
[3]  
Dittrich J., 2004, BUSINESS PROCESS OUT
[4]  
Guenane F, 2012, GLOB INF INFR NETW S, P1
[5]  
Guenane F., 2014, NETW OP MAN S NOMS 2
[6]   First Step Toward Cloud-Based Firewalling [J].
Khakpour, Amir R. ;
Liu, Alex X. .
2012 31ST INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS 2012), 2012, :41-50
[7]  
Lau F, 2000, IEEE SYS MAN CYBERN, P2275, DOI 10.1109/ICSMC.2000.886455
[8]  
Malecki Florian, 2012, Network Security, V2012, P18, DOI 10.1016/S1353-4858(12)70075-2
[9]  
Mansfield-Devine Steve, 2011, Network Security, V2011, P5, DOI 10.1016/S1353-4858(11)70128-3
[10]  
Mansfield-Devine Steve, 2011, Network Security, V2011, P5, DOI 10.1016/S1353-4858(11)70084-8