A new metric for flow-level filtering of low-rate DDoS attacks
dc.contributor.author | Şimşek, Mehmet | |
dc.date.accessioned | 2020-04-30T22:38:44Z | |
dc.date.available | 2020-04-30T22:38:44Z | |
dc.date.issued | 2015 | |
dc.department | DÜ, Mühendislik Fakültesi, Bilgisayar Mühendisliği Bölümü | en_US |
dc.description | WOS: 000367922500042 | en_US |
dc.description.abstract | Low-rate distributed denial-of-service (LDDoS) attacks dramatically reduce transmission control protocol throughput by exploiting the vulnerability in the transmission control protocol congestion control mechanism. The current study proposes a new metric called mean Internet Protocol (IP) packet delay variation (mipdv) to detect LDDoS flows and a filtering method called ipdv-based LDDoS filtering (ILF) using mipdv. Receiving first seven packets from a flow is sufficient to calculate the mipdv metric. Subsequently, mipdv can be recalculated for each received packet. This makes the detection of LDDoS flows possible in a short time (in a few tens of milliseconds in most cases). Ns2 simulations were conducted to evaluate the performance of ILF. Experimental results show that ILF detects LDDoS flows in a very short time with very high accuracy. Copyright (C) 2015 John Wiley & Sons, Ltd. | en_US |
dc.identifier.doi | 10.1002/sec.1302 | en_US |
dc.identifier.endpage | 3825 | en_US |
dc.identifier.issn | 1939-0114 | |
dc.identifier.issn | 1939-0122 | |
dc.identifier.issue | 18 | en_US |
dc.identifier.scopusquality | Q2 | en_US |
dc.identifier.startpage | 3815 | en_US |
dc.identifier.uri | https://doi.org/10.1002/sec.1302 | |
dc.identifier.uri | https://hdl.handle.net/20.500.12684/2408 | |
dc.identifier.volume | 8 | en_US |
dc.identifier.wos | WOS:000367922500042 | en_US |
dc.identifier.wosquality | Q3 | en_US |
dc.indekslendigikaynak | Web of Science | en_US |
dc.indekslendigikaynak | Scopus | en_US |
dc.language.iso | en | en_US |
dc.publisher | Wiley-Hindawi | en_US |
dc.relation.ispartof | Security And Communication Networks | en_US |
dc.relation.publicationcategory | Makale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanı | en_US |
dc.rights | info:eu-repo/semantics/closedAccess | en_US |
dc.subject | low-rate distributed DoS | en_US |
dc.subject | TCP | en_US |
dc.subject | QoS | en_US |
dc.subject | ipdv | en_US |
dc.subject | congestion | en_US |
dc.title | A new metric for flow-level filtering of low-rate DDoS attacks | en_US |
dc.type | Article | en_US |
Dosyalar
Orijinal paket
1 - 1 / 1
Küçük Resim Yok
- İsim:
- 2408.pdf
- Boyut:
- 1.06 MB
- Biçim:
- Adobe Portable Document Format
- Açıklama:
- Tam Metin / Full Text