• DocumentCode
    3398138
  • Title

    Methodologies and metrics for the testing and analysis of distributed denial of service attacks and defenses

  • Author

    Schwab, Stefan ; Wilson, Brian ; Thomas, Robert

  • Author_Institution
    SPARTA Inc., USA
  • fYear
    2005
  • fDate
    17-20 Oct. 2005
  • Firstpage
    2686
  • Abstract
    In this paper, we describe our ongoing efforts to develop methodologies and metrics for the testing and analysis of distributed denial of service (DDoS) attacks and defenses as part of the Evaluation Methods for Internet Security Technologies (EMIST) project funded by the Department of Homeland Security (DHS) and the National Science Foundation (NSF). The EMIST project in turn makes use of the Cyber Defense technology Experimental Research (DETER) network. DETER is an experimental network test bed built to support national-scale experimentation of security research and technologies. Our objective is to advance the state of the art in the testing, analysis and assessment of DDoS attacks and defenses. To enable this, we are designing a canonical experimentation methodology to guide an experimenter in systematically defining and conducting evaluations. We are also developing a metrics framework to go hand-in-hand with the canonical experimentation methodology. We also describe the results and lessons learnt from initial DDoS experiments using our floodwatch defense technology.
  • Keywords
    Internet; quality of service; security of data; telecommunication security; Cyber Defense technology Experimental Research; DDoS attack; DETER network; DHS; Department of Homeland Security; EMIST project; Evaluation Methods for Internet Security Technology; NSF; National Science Foundation; canonical experimentation methodology; distributed denial of service; floodwatch defense technology; Communication system traffic control; Computer crime; National security; Network topology; Routing; System testing; Taxonomy; Terrorism; Web and internet services; Web services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Military Communications Conference, 2005. MILCOM 2005. IEEE
  • Conference_Location
    Atlantic City, NJ
  • Print_ISBN
    0-7803-9393-7
  • Type

    conf

  • DOI
    10.1109/MILCOM.2005.1606072
  • Filename
    1606072