返回
A method of DDoS attack detection using HTTP packet pattern and rule engine in cloud computing environment
DOI:10.1007/s00500-014-1250-8.png)
摘要
En 中文
Cloud computing is a more advanced technology for distributed processing, e.g., a thin client and grid computing, which is implemented by means of virtualization technology for servers and storages, and advanced network functionalities. However, this technology has certain disadvantages such as monotonous routing for attacks, easy attack method, and tools. This means that all network resources and operations are blocked all at once in the worst case. Various studies such as pattern analyses and network-based access control for infringement response based on Infrastructure as a Service, Platform as a Service and Software as a Service in cloud computing services have therefore been recently conducted. This study proposes a method of integration between HTTP GET flooding among Distributed Denial-of-Service attacks and MapReduce processing for fast attack detection in a cloud computing environment. In addition, experiments on the processing time were conducted to compare the performance with a pattern detection of the attack features using Snort detection based on HTTP packet patterns and log data from a Web server. The experimental results show that the proposed method is better than Snort detection because the processing time of the former is shorter with increasing congestion.
Keyword:
Cloud computing
DDoS attack detection
HTTP packet pattern
MapReduce
期刊
IF:
2.5
论文数:
1.0W
被引数:
2.1W
机构
引用论文
IT2FS-based ontology with soft-computing mechanism for malware behavior analysis基于软计算机制的恶意软件行为分析IT2FS-based本体
SOFT COMPUTING
IF2.5
Primary Cardiac Lymphoma with Infiltration of the Atrioventricular Node: Remission with Reversal of the Atrioventricular Block Induced by Chemotherapy
Cardiology
IF0

