A new metric for flow level filtering of low rate DDoS attacks
Yazarlar (1)
Prof. Dr. Mehmet ŞİMŞEK Sinop Üniversitesi, Türkiye
Makale Türü Özgün Makale (SSCI, AHCI, SCI, SCI-Exp dergilerinde yayınlanan tam makale)
Dergi Adı Security and Communication Networks (Q3)
Dergi ISSN 1939-0114 Dergi Bilgileri (2015)
Dergi Tarandığı Indeksler SCI-Expanded
Makale Dili İngilizce Basım Tarihi 12-2015
Kabul Tarihi Yayınlanma Tarihi 29-06-2015
Cilt / Sayı / Sayfa 8 / 18 / 3815–3825 DOI 10.1002/sec.1302
Makale Linki http://doi.wiley.com/10.1002/sec.1302
UAK Araştırma Alanları
Algoritmalar ve Hesaplama Kuramı
Özet
Low‐rate distributed denial‐of‐service (LDDoS) attacks dramatically reduce transmission control protocol throughput by exploiting the vulnerability in the transmission control protocol congestion control mechanism. The current study proposes a new metric called mean Internet Protocol (IP) packet delay variation (mipdv) to detect LDDoS flows and a filtering method called ipdv‐based LDDoS filtering (ILF) using mipdv. Receiving first seven packets from a flow is sufficient to calculate the mipdv metric. Subsequently, mipdv can be recalculated for each received packet. This makes the detection of LDDoS flows possible in a short time (in a few tens of milliseconds in most cases). Ns2 simulations were conducted to evaluate the performance of ILF. Experimental results show that ILF detects LDDoS flows in a very short time with very high accuracy. Copyright © 2015 John Wiley & Sons, Ltd.
Anahtar Kelimeler
Congestion | Ipdv | Low-rate distributed DoS | QoS | TCP
BM Sürdürülebilir Kalkınma Amaçları
Atıf Sayıları
Web of Science 12
Scopus 18
Google Scholar 20
A new metric for flow level filtering of low rate DDoS attacks

Paylaş