SDN-Assisted Slow HTTP DDoS Attack Defense Method

被引:77
作者
Hong, Kiwon [1 ]
Kim, Youngjun [1 ]
Choi, Hyungoo [1 ]
Park, Jinwoo [1 ]
机构
[1] Korea Univ, Sch Elect Engn, Seoul 02841, South Korea
关键词
Distributed denial of service (DDoS); slow HTTP DDoS; software-defined networking (SDN);
D O I
10.1109/LCOMM.2017.2766636
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
A Slow HTTP distributed denial of service (DDoS) attack causes a Web server to be unavailable, but it is difficult to detect in a network, because its traffic patterns are similar to those of legitimate clients. In this letter, we propose a network-based Slow HTTP DDoS attack defense method, which is assisted by a software-defined network that can detect and mitigate Slow HTTP DDoS attacks in the network. Simulation results show that the proposed Slow HTTP DDoS attack defense method successfully protects Web servers against Slow HTTP DDoS attacks.
引用
收藏
页码:688 / 691
页数:4
相关论文
共 11 条
[1]  
[Anonymous], 2017, INT C MOB WIR TECHN, DOI DOI 10.1007/978-981-10-5281-1
[2]  
[Anonymous], 2013, International Journal of Trust Management in Computing and Communications
[3]   DDoS Attack Detection and Mitigation Using SDN: Methods, Practices, and Solutions [J].
Bawany, Narmeen Zakaria ;
Shamsi, Jawwad A. ;
Salah, Khaled .
ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2017, 42 (02) :425-441
[4]  
Buragohain Chaitanya, 2016, 2016 3rd International Conference on Signal Processing and Integrated Networks (SPIN), P519, DOI 10.1109/SPIN.2016.7566750
[5]  
da Silva AS, 2016, IEEE IFIP NETW OPER, P27, DOI 10.1109/NOMS.2016.7502793
[6]   A Defense Method against Distributed Slow HTTP DoS Attack [J].
Hirakawa, Tetsuya ;
Ogura, Kanayo ;
Bista, Bhed Bahadur ;
Takata, Toyoo .
PROCEEDINGS OF 2016 19TH INTERNATIONAL CONFERENCE ON NETWORK-BASED INFORMATION SYSTEMS (NBIS), 2016, :152-+
[7]  
Open Networking Foundation, OPENFLOW SWITCH SPEC
[8]   How Secure are Web Servers? An Empirical Study of Slow HTTP DoS Attacks and Detection [J].
Tripathi, Nikhil ;
Hubballi, Neminath ;
Singh, Yogendra .
PROCEEDINGS OF 2016 11TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, (ARES 2016), 2016, :454-463
[9]   Software-Defined Networking (SDN) and Distributed Denial of Service (DDoS) Attacks in Cloud Computing Environments: A Survey, Some Research Issues, and Challenges [J].
Yan, Qiao ;
Yu, F. Richard ;
Gong, Qingxiang ;
Li, Jianqiang .
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2016, 18 (01) :602-622
[10]  
Yang J, 2013, P 2013 IEEE PES ASIA, P1, DOI [DOI 10.1109/APPEEC.2013.6837205, 10.1109/APPEEC.2013.6837205]