Title
Inter-domain security management to protect legitimate user access from DDoS attacks
Abstract
In this paper, we propose a cooperative inter-domain security mana- gement to protect access of legitimate users from the DDoS attacks exploiting randomly spoofed source IP addresses. We assume that Internet is divided into multiple domains and there exists one or more domain security manager in each domain, which is responsible for identifying hosts within the domain. The security management cooperation is achieved in two steps. First, a domain security manager forwards information regarding identified suspicious attack flows to neighboring managers. Secondly, the domain security manager verifies the attack upon receiving return messages from the neighboring managers. The management method proposed in this paper is designed not only to prevent network resources from being exhausted by the attacks but also to increase the possibility that legitimate users can fairly access the target services. Through the experiment on a test-bed, the proposed method was verified to be able to maintain high detection accuracy and to enhance the normal packet survival rate.
Year
DOI
Venue
2006
10.1007/11751588_91
ICCSA
Keywords
Field
DocType
inter-domain security management,security management cooperation,legitimate user access,ddos attack,legitimate user,suspicious attack,neighboring manager,multiple domain,cooperative inter-domain security mana,management method,domain security manager,security management,test bed
Inter-domain,Spoofing attack,Denial-of-service attack,Computer security,Computer science,Network packet,Computer network,Security information and event management,Application layer DDoS attack,The Internet,Security management
Conference
Volume
ISSN
ISBN
3981
0302-9743
3-540-34072-6
Citations 
PageRank 
References 
0
0.34
8
Authors
2
Name
Order
Citations
PageRank
Sung Ki Kim122.47
Byoung-Joon Min284.39