Distributed defense against distributed Denial-of-Service attacks

Wei Shi, Yang Xiang, Wanlei Zhou

Research output: Chapter in Book/Report/Conference proceedingConference PaperResearchpeer-review

2 Citations (Scopus)

Abstract

Distributed defense is a promising way to neutralize the distributed Denial-of-Service attacks by detecting and responding the attacking sources widespread around the Internet. Components of the distributed defense system will cooperate with each other to combat the attacks. Compared with the centralized defense systems, distributed defense systems can discover the attacks more timely from both source end and victim end, fight the attacks with more resources and take advantage of more flexible strategies. This paper investigates 7 distributed defense systems which make use of various strategies to mitigate the DDoS attacks. Different architectures are designed in these 7 systems to provide distributed DDoS defense solutions. We evaluate these systems in terms of deployment, detection, response, security, robustness and implementation. For each criteria, we give a recommendation on which technologies are best suitable for a successful distributed defense system based on the analysis result. Finally we propose our idea on the design of an effective distributed defense system.

Original languageEnglish
Title of host publicationDistributed and Parallel Computing
Subtitle of host publication6th International Conference on Algorithms and Architectures for Parallel Processing, ICA3PP Melbourne, Australia, October 2-3, 2005 Proceedings
EditorsMichael Hobbs, Andrzej M. Goscinsk, Wanlei Zhou
Place of PublicationBerlin Germany
PublisherSpringer
Pages357-362
Number of pages6
ISBN (Electronic)9783540320715
ISBN (Print)9783540292357
DOIs
Publication statusPublished - 2005
Externally publishedYes
EventInternational Conference on Algorithms and Architectures for Parallel Processing 2005 - Melbourne, Australia
Duration: 2 Oct 20053 Oct 2005
Conference number: 6th

Publication series

NameLecture Notes in Computer Science
PublisherSpringer
Volume3719
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

ConferenceInternational Conference on Algorithms and Architectures for Parallel Processing 2005
Abbreviated titleICA3PP 2005
Country/TerritoryAustralia
CityMelbourne
Period2/10/053/10/05

Cite this