DDOS WALL: AN INTERNET SERVICE PROVIDER PROTECTOR
Main Article Content
Abstract
Distributed denial-of-service (DDoS) attacks remaina major security problem, the mitigation of which is very hard especiallywhen it comes to highly distributed botnet-based attacks.The early discovery of these attacks, although challenging, is necessaryto protect end-users as well as the expensive network infrastructure resources. In this paper, we address the problem of DDoS attacks and present the theoretical foundation, architecture, and algorithms of DDOS Wall. The core of DDOS Wall is composed of intrusion prevention systems (IPSs) located at the Internet service providers (ISPs) level. The IPSs form virtual protection rings around the hosts to defend and collaborate by exchanging selected traffic information. The evaluation of DDOS Wall using extensive simulations and a real dataset is presented, showing DDOS Wall effectiveness and low overhead, as well as its support for incremental deployment in real networks.