DocumentCode
1886459
Title
Hierarchical Defense Structure for Mitigating DoS Attacks
Author
Johnson, H. ; Qaisrani, B. ; Fiedler, M. ; Nilsson, A. ; Wu, S.F.
Author_Institution
Blekinge Institute of Technology, Sweden
fYear
2006
fDate
23-29 April 2006
Firstpage
83
Lastpage
83
Abstract
This paper provides the contribution of mitigating a Denial-of-Service (DoS) attack via a developed hierarchical defense structure with proactive functionality. An important aspect is the tradeoff between performance and security. This novel hierarchical architecture is presented with lightweight authentication protocols acting as a classifier to deny access to harmful traffic. An empirical test of the proposed structure has been performed and results are reported which display the capability of the structure to filter and separate the attack traffic before reaching the target of an IPSec gateway. Thus, the filtering of traffic is performed without being the target itself for new resource exhaustion attacks. The considered IPSec environment is based on IPSec gateways for the low-end market, i.e., for small businesses or private networks.
Keywords
Access protocols; Authentication; Computer crime; Displays; Filtering; Filters; Performance evaluation; Security; Telecommunication traffic; Testing;
fLanguage
English
Publisher
ieee
Conference_Titel
Networking, International Conference on Systems and International Conference on Mobile Communications and Learning Technologies, 2006. ICN/ICONS/MCL 2006. International Conference on
Print_ISBN
0-7695-2552-0
Type
conf
DOI
10.1109/ICNICONSMCL.2006.111
Filename
1628329
Link To Document