返回
Detecting and Mitigating DDoS Attack in Named Data Networking
DOI:10.1007/s10922-020-09539-8.png)
摘要
En 中文
Named Data Networking (NDN) is a new and attractive paradigm that got a broad interest in recent researches as a potential alternative for the existing IP-based (host-based) Internet architecture. Security is considered explicitly as one of the most critical issues about NDN. Despite that NDN architecture presents higher resilience against most existing attacks, its architecture, nevertheless, can be exploited to start a DDoS attack. In the DDoS attack, the attacker tries to create and transmit a large number of fake Interest packets to increase network congestion and thus dropping legitimate interests by NDN routers. This paper proposes a new technique to detect and mitigate DDoS attacks in NDN that depends on cooperation among NDN routers with the help of a centralized controller. The functionality of these routers depends on their positions inside the autonomous system (AS). The simulation results show that the suggested technique is effective and precise to detect the fake name prefixes and, it offers better performance comparing with the previously proposed ones.
Keyword:
Named Data Networking Controller
Pending Interest Table
Distributed Denial of Service Attack
Interest Flooding Attack
Quotient based Cuckoo filter and Forwarding Information Base
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
IF:
3.9
论文数:
1.0K
被引数:
1.3K
机构
引用论文
Moment expansion of the kinetic equation and its application to strongly coupled plasmas动量方程的矩展开及其在强耦合等离子体中的应用
ChemInform Abstract: Formation and Anion Exchange Reactions of Layered Transition Metal Hydroxides (Ni1‐xMx)(OH)2(CO3)x/2(H2O)z (M: Fe, Co).
ChemInform
IF0
Symmetry breaking patterns for third-rank totally antisymmetric representations of unitary groups酉群的三阶全反对称表示的对称性破缺模式

