DocumentCode :
3058393
Title :
Packet Level Simulation of Cooperative Distributed Defense against Internet Attacks
Author :
Kotenko, Igor ; Ulanov, Alexander
Author_Institution :
St.Petersburg Inst. for Informatics & Autom., St. Petersburg
fYear :
2008
fDate :
13-15 Feb. 2008
Firstpage :
565
Lastpage :
572
Abstract :
Nowadays we see an increasing number of global network attacks. These attacks are realized due to joint efforts of many distributed malicious software components (bots). It is very hard to investigate the effectiveness and efficiency of defense mechanisms against such attacks in practice. However these mechanisms might be simulated with the necessary fidelity. The paper outlines a framework and software tool intended for simulation of the Internet attacks and defense mechanisms against them. They are based on packet-level simulation and agent-oriented approach and intended to evaluate and compare different cooperative distributed defense mechanisms. The paper describes the simulation framework and software tool developed and their usage to analyze cooperative defense mechanisms against DDoS (distributed denial of service) attacks. We investigate as mechanisms based on partial cooperation of distributed defense components, including DefCOM (defensive cooperative overlay mesh) and COSSACK (coordinated suppression of simultaneous attacks) as well as the approach based on full cooperation.
Keywords :
Internet; distributed processing; security of data; software tools; telecommunication security; Internet attack; agent-oriented approach; bots; cooperative distributed defense; coordinated suppression of simultaneous attacks; defensive cooperative overlay mesh; distributed denial of service attack; distributed malicious software component; global network attack; packet level simulation; software tool; Authentication; Filtering; IP networks; Internet; Network servers; Protocols; Quality of service; Software tools; Telecommunication traffic; Traffic control; Cooperative distributed defence; DDoS; Network attacks; Simulation;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Parallel, Distributed and Network-Based Processing, 2008. PDP 2008. 16th Euromicro Conference on
Conference_Location :
Toulouse
ISSN :
1066-6192
Print_ISBN :
978-0-7695-3089-5
Type :
conf
DOI :
10.1109/PDP.2008.65
Filename :
4457171
Link To Document :
بازگشت