arrow
返回

Reducing Internal Collateral Damage From DDoS Attacks Through Micro-Service Cloud Architecture

delete2025-01-01
delete0
PRE
AI
A
Anmol Kumar
M
Mayank Agarwal *
DOI:10.1109/TIFS.2024.3516560delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Mitigating DDoS attacks poses a significant challenge for cyber security teams within victim organizations, as these attacks directly target service availability. Most DDoS mitigation solutions focus address the direct effects of DDoS attacks, such as service unavailability and network congestion, while the indirect effects, including collateral damage to legitimate users, receive substantially less attention in the present state-of-the-art. To address this gap, we propose a novel defense architecture designed to mitigate collateral damage and ensure service availability for legitimate users even under attack conditions. The proposed approach employs containerization, micro-services architecture, and traffic segmentation to enhance system resilience and fortify security. We send requests for two distinct services, namely an HTTP-based service and an SSH service, in order to analyze the collateral damage caused by the DDoS attack. The proposed architecture classifies incoming HTTP traffic into two categories: benign traffic and suspicious traffic, determined by the number of requests originating from the same source address. We tested this approach in three different scenarios (S-1, S-2, and S-3). Experimental results demonstrate that the proposed architecture effectively isolates suspicious traffic, mitigating its impact on benign services. This ensures the availability of critical services during a DDoS attack while minimizing collateral damage. In scenarios S-1, S-2, and S-3, it maintains service availability at 3%, 67%, and 98%, respectively, highlighting its efficacy in the face of varying levels of DDoS attack intensity. Furthermore, the architecture is extremely effective in reducing the collateral effects on SSH requests during a DDoS attack. In the S-1 scenario, SSH login time was reduced by 25%, 46%, and 27%, respectively. In the S-2 scenario, the reductions were 99%, 53%, and 29%. In the same vein, the system achieved reductions of 4%, 17%, and 99% in the S-3 scenario.
Keyword:
Denial-of-service attack
Computer crime
Cloud computing
Prevention and mitigation
Containers
Virtual machines
Computer architecture
Computational modeling
Accuracy
Security
Security and protection
cloud computing
DDoS attacks
containerization

期刊

IEEE Transactions on Information Forensics and Security 封面图
IEEE Transactions on Information Forensics and Security
IF:
8
论文数:
5.3K
被引数:
2.3W

机构

I
indian institute of technology system (iit system)
学者数:
9.5W
论文数: 9.9W
被引数: 93
引用论文

引用论文

Effects of high oxygen exposure on bioenergetics in isolated type II pneumocytes
err1979-07-01
err0
PREAI
errL. M. Simon; T. A. Raffin; W. H. Douglas; J. Theodore; E. D. Robin
err分享
err收藏
Can We Beat DDoS Attacks in Clouds?
err2014-09-01
err164
PREAI
errYu, Shui; Tian, Yonghong; Guo, Song; Wu, Dapeng Oliver
err分享
err收藏
Microservices
err2015-01-01
err374
errOAAI
errThoenes, Johannes
err分享
err收藏
err分享
err收藏
学者 查看更多内容