{"title":"A DDoS-Oriented Distributed Defense Framework Based on Edge Router Feedbacks in Autonomous Systems","authors":"Xiaoming Bi, Wenan Tan, RuoHui Xiao","doi":"10.1109/IMSCCS.2008.10","DOIUrl":null,"url":null,"abstract":"Distributed defense of distributed denial of service (DDoS) is one of the main research areas in DDoS recently. It is preferred to be conducted as the control-based defense. However, some existed methods have their respective disadvantages, such as efficiency, privacy. Therefore, a DDoS-oriented distributed defense framework based on the edge router feedbacks in autonomous systems (AS) is proposed to thwart the attack traffic in the boundary of AS near to the attacking sources. In the attacks, by measuring its ingress traffic rate the victim sends the feedbacks to the edge routers, as a result that malicious traffic is effectively filtered in AS boundary. The experiments show that the distributed defense framework can effectively guarantee the survival rate of legitimate flows and protect the victims in AS from DDoS.","PeriodicalId":122953,"journal":{"name":"2008 International Multi-symposiums on Computer and Computational Sciences","volume":"36 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2008-10-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2008 International Multi-symposiums on Computer and Computational Sciences","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/IMSCCS.2008.10","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6
Abstract
Distributed defense of distributed denial of service (DDoS) is one of the main research areas in DDoS recently. It is preferred to be conducted as the control-based defense. However, some existed methods have their respective disadvantages, such as efficiency, privacy. Therefore, a DDoS-oriented distributed defense framework based on the edge router feedbacks in autonomous systems (AS) is proposed to thwart the attack traffic in the boundary of AS near to the attacking sources. In the attacks, by measuring its ingress traffic rate the victim sends the feedbacks to the edge routers, as a result that malicious traffic is effectively filtered in AS boundary. The experiments show that the distributed defense framework can effectively guarantee the survival rate of legitimate flows and protect the victims in AS from DDoS.