DocumentCode :
3370271
Title :
A simulation study of the proactive server roaming for mitigating denial of service attacks
Author :
Sanetachatanaruk, C. ; Khattab, Sherif M. ; Znati, Taieb ; Melhem, Rami ; Mosse, Daniel
Author_Institution :
Dept. of Inf. Sci. & Telecommun., Pittsburgh Univ., PA, USA
fYear :
2003
fDate :
30 March-2 April 2003
Firstpage :
7
Lastpage :
14
Abstract :
The main goal of the NETSEC project is to design and implement a framework for mitigating the effects of the node-based and link-based denial of service (DoS) attacks. Our strategy employs three lines of defense. The first line of defense is to restrict the access to the defended services using offline service subscription, encryption and other traditional security techniques. The second line of defense is server roaming, by which we mean the migration of the service from one server to another, where the new server has a different IP address. Finally, each server and firewall(s) implement resource management schemes as a third line of defense. For example, deploying separate input queues to allocate different classes of service requests. We show our simulation study on the second line of defense, the server roaming. The design and procedure of the sever roaming on the NS2 is described. The promising results of applying the server roaming to mitigate the DoS attack in the simulation are also shown with analysis.
Keywords :
Internet; client-server systems; digital simulation; security of data; transport protocols; IP address; NETSEC project; NS2; denial of service attacks; encryption; firewall; link-based attacks; node-based attacks; offline service subscription; proactive server roaming; resource management schemes; security techniques; Authentication; Bandwidth; Computational modeling; Computer crime; Cryptography; File servers; Internet; Network servers; Operating systems; Web server;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Simulation Symposium, 2003. 36th Annual
ISSN :
1080-241X
Print_ISBN :
0-7695-1911-3
Type :
conf
DOI :
10.1109/SIMSYM.2003.1192793
Filename :
1192793
Link To Document :
بازگشت