University of Illinois at Urbana-Champaign
An effective network flow prioritization approach in DDoS scenarios
Abstract
dc:descriptionIn the modern Internet, Distributed Denial-of-Service (DDoS) has been a constant threat to all web services. An attacker may send a flood of requests with a botnet to the victim system, so that the system will waste all resources processing the huge number of unnecessary requests generated by an attacker and will not be available to any normal user. To mitigate DDoS attacks, it is crucial for a defense mechanism to have a policy that can discriminate legitimate network flows from the malicious ones. Such a fairness policy will help prioritizing the legitimate flows and prevent the system from DDoS attacks. In this thesis, we present and compare the effectiveness of four different fairness policies using data collected from real-world DDoS scenarios on a commercial web server. Unlike previous prioritization schemes, our policies study the characteristics of the network flows and are proved to be effective.
Degree
thesis:*- Name thesis:degree_name
- M.S.
- Level thesis:degree_level
- Thesis
- Discipline thesis:degree_discipline
- Electrical & Computer Engr
- Grantor
- University of Illinois at Urbana-Champaign
- Year dc:date
- 2019
Author and committee
dc:creator, dc:contributor.*- Author dc:creator
-
- Liu, Shu
- Contributors dc:contributor
-
- Hu, Yih-Chun
Subjects
dc:subject × 2Rights
dc:rights- Statement dc:rights
-
- Copyright 2019 Shu Liu
- Language dc:language
- en
Identifiers
dc:identifier.*- Handle dc:identifier
- http://hdl.handle.net/2142/105224
- OAI identifier oai:identifier
- oai:www.ideals.illinois.edu:2142/105224