Advanced Computing and Information Technology |
Foundation of Computer Science USA |
TACIT2016 - Number 1 |
August 2016 |
Authors: Pranay Meshram, Ravindra Jogekar, Pratibha Bhaisare |
bc8136c7-9cfc-4921-b72e-e16c3e254077 |
Pranay Meshram, Ravindra Jogekar, Pratibha Bhaisare . New Integrated Approach for Mitigating DDOS Attacks. Advanced Computing and Information Technology. TACIT2016, 1 (August 2016), 33-37.
In this paper we provide an integrated defense solution that enables filtering and admission challenges to be implemented in a distributed manner throughout the network on behalf of the target. The admission challenge is provided through the client puzzles employed at the target. This scuttles any attempt made by the attacker to flood the target because until the client solves the puzzle it isn't granted access to the targets resources. If the attack persists or worsens, then the target could propagate a distress signal upstream to its Internet Service Provider (ISP), who could deploy proxy defenses at the ingress points to the ISP's network on behalf of the target. In general, the target's ISP could request other upstream ISPs to also deploy the defenses for the target by using the pushback technique, so that the attack traffic is blocked as close as possible to the source of the traffic. A key advantage of this proposed approach is that it could enable the defenders to harness greater computational resources in order to counteract the growth in attack power that is becoming available to attackers.