Filtration Model For DDoS Attack Detection in Real-Time
Filtering traffic of distributed denial of services (DDoS) attack requires extra overhead which mostly results in network performance degradation. This study proposes a filtration model for detecting DDoS attack in real-time without causing negative degradation against network performance. The mode...
Main Author: | |
---|---|
Format: | Article |
Language: | English |
Published: |
Penerbit UMP
2015
|
Subjects: | |
Online Access: | http://umpir.ump.edu.my/id/eprint/9146/ http://umpir.ump.edu.my/id/eprint/9146/ http://umpir.ump.edu.my/id/eprint/9146/1/Filtration%20Model%20For%20DDoS%20Attack%20Detection%20in%20Real-Time.pdf |
Summary: | Filtering traffic of distributed denial of services (DDoS) attack requires extra overhead which mostly results in network performance degradation. This study proposes a
filtration model for detecting DDoS attack in real-time without causing negative degradation against network performance. The model investigates network traffic in a
scalable way to detect user violations on quality of service regulations. Traffic investigation is triggered only when the network is congested; at that exact moment,
burst gateways actually generate an explicit congestion notification to misbehaving users. The misbehaving users are thus further investigated by measuring their
consumption ratios of bandwidth. By exceeding the service level agreement bandwidth ratio, user traffic is filtered as malicious traffic. Simulation results demonstrate that the proposed model efficiently monitors malicious traffic and precisely detects DDoS attack. |
---|