DocumentCode
3176253
Title
Topology Awareness on Network Damage Assessment and Control Strategies Generation
Author
He, Hui ; Zhang, HongLi ; Yin, Lihua ; Liu, Yongtan
Author_Institution
Dept. of Comput. Sci. & Eng., Harbin Inst. of Technol., Harbin, China
fYear
2009
fDate
21-22 Dec. 2009
Firstpage
169
Lastpage
175
Abstract
Threatens faced by large-scale network attacks, it is of great importance to exert an emergency response, in order to mitigate the further hazardous caused by network attacks. To implement a reasonable control strategy, a minimal set of routers is computed in a network that can be used to control and reduce damage done by a large-scale attack such as worm or DDOS attacks. Our work focuses on large network while previous works focus on LANs. We proposed rules to choose these routers based on the network topology and based on risk assessment. Many topological factors are considered into the control strategy process, the control router sets selecting algorithm based on entropy was put forward. According to the incidents distribution on the topology, the factor of macroscopic epidemic status is proposed by the method of quantitative and qualitative analysis, which offers administrators the direct decisive advice to prevent network security event from overspreading and minimize the costs. At last, the experiment effectively proved the evaluation framework and the control algorithm.
Keywords
computer network security; entropy; telecommunication control; telecommunication network routing; telecommunication network topology; control router set selecting algorithm; control strategy generation; entropy; large-scale network attack; macroscopic epidemic status; network damage assessment; network security; network topology; qualitative analysis; quantitative analysis; risk assessment; topology awareness; Communication system control; Computer networks; Computer science; Computer worms; Electronic mail; Entropy; Intrusion detection; Large-scale systems; Network topology; Process control; Control strategy; Emergency response; Entropy; Network security;
fLanguage
English
Publisher
ieee
Conference_Titel
Internet Computing for Science and Engineering (ICICSE), 2009 Fourth International Conference on
Conference_Location
Harbin
Print_ISBN
978-1-4244-6754-9
Type
conf
DOI
10.1109/ICICSE.2009.50
Filename
5521608
Link To Document