L. Santhanam, D. Nandiraju, N. Nandiraju, D. Agrawal
{"title":"基于主动缓存的无线网状网络DoS攻击防御","authors":"L. Santhanam, D. Nandiraju, N. Nandiraju, D. Agrawal","doi":"10.1109/ISWPC.2007.342640","DOIUrl":null,"url":null,"abstract":"Wireless mesh network (WMN) is evolving to be a new paradigm for wireless Internet connectivity as it obviates the need for wired infrastructure at every access point (AP) a.k.a mesh router (MR). The MRs collaboratively forward the traffic towards the Internet gateway (IGW). The self-configurable architecture of MRs paves way for malicious intruders to conduct a denial-of-service attack (DoS) on the MRs by flooding the network with a large volume of traffic; thus rendering the system inaccessible to the real users. In this paper, we present a cache based defense at the MRs to identify flooding style DoS attacks. We use a most frequently used cache mechanism to identify such flows and raise an early alert to curb them. We effectively avert any performance degradation by dropping the identified attack flows along the forwarding routers. Simulation results indicate that our scheme offers an active line of defense against DoS attacks","PeriodicalId":403213,"journal":{"name":"2007 2nd International Symposium on Wireless Pervasive Computing","volume":"64 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2007-04-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"27","resultStr":"{\"title\":\"Active Cache Based Defense against DoS Attacks in Wireless Mesh Network\",\"authors\":\"L. Santhanam, D. Nandiraju, N. Nandiraju, D. Agrawal\",\"doi\":\"10.1109/ISWPC.2007.342640\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Wireless mesh network (WMN) is evolving to be a new paradigm for wireless Internet connectivity as it obviates the need for wired infrastructure at every access point (AP) a.k.a mesh router (MR). The MRs collaboratively forward the traffic towards the Internet gateway (IGW). The self-configurable architecture of MRs paves way for malicious intruders to conduct a denial-of-service attack (DoS) on the MRs by flooding the network with a large volume of traffic; thus rendering the system inaccessible to the real users. In this paper, we present a cache based defense at the MRs to identify flooding style DoS attacks. We use a most frequently used cache mechanism to identify such flows and raise an early alert to curb them. We effectively avert any performance degradation by dropping the identified attack flows along the forwarding routers. Simulation results indicate that our scheme offers an active line of defense against DoS attacks\",\"PeriodicalId\":403213,\"journal\":{\"name\":\"2007 2nd International Symposium on Wireless Pervasive Computing\",\"volume\":\"64 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2007-04-16\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"27\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2007 2nd International Symposium on Wireless Pervasive Computing\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ISWPC.2007.342640\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2007 2nd International Symposium on Wireless Pervasive Computing","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISWPC.2007.342640","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Active Cache Based Defense against DoS Attacks in Wireless Mesh Network
Wireless mesh network (WMN) is evolving to be a new paradigm for wireless Internet connectivity as it obviates the need for wired infrastructure at every access point (AP) a.k.a mesh router (MR). The MRs collaboratively forward the traffic towards the Internet gateway (IGW). The self-configurable architecture of MRs paves way for malicious intruders to conduct a denial-of-service attack (DoS) on the MRs by flooding the network with a large volume of traffic; thus rendering the system inaccessible to the real users. In this paper, we present a cache based defense at the MRs to identify flooding style DoS attacks. We use a most frequently used cache mechanism to identify such flows and raise an early alert to curb them. We effectively avert any performance degradation by dropping the identified attack flows along the forwarding routers. Simulation results indicate that our scheme offers an active line of defense against DoS attacks