Analysis of UDP DDoS flood cyber attack and defense mechanisms on Web Server with Linux Ubuntu 13

Analysis of UDP DDoS flood cyber attack and defense mechanisms on Web Server with Linux Ubuntu 13
复制标题

DOI:
10.1109/iccspa.2015.7081286
复制
发表时间:
2015-02
期刊:
2015 International Conference on Communications, Signal Processing, and their Applications (ICCSPA'15)
影响因子:
--
通讯作者:
S. S. Kolahi-S.;Kiattikul Treseangrat;B. Sarrafpour
S. S. Kolahi-S.;Kiattikul Treseangrat;B. Sarrafpour
中科院分区:
其他
文献类型:
--
作者:
S. S. Kolahi-S.;Kiattikul Treseangrat;B. Sarrafpour

文献摘要

被引文献

相似文献

拒绝服务(DoS)攻击是互联网世界中的主要威胁之一,也是最难的安全问题之一。特别值得关注的是分布式拒绝服务(DDoS)攻击,其影响可能相当严重。在很少或没有预先警告的情况下,攻击者可以在短时间内轻松耗尽受害者的计算资源。在本文中,我们研究了UDP洪水攻击对TCP吞吐量,往返时间和CPU利用率的Web服务器与新一代的Linux平台,Linux Ubuntu 13的影响。本文还评估了各种防御机制的影响,包括访问控制列表(ACL),阈值限制,反向路径转发(IP验证)和网络负载平衡。阈值限制被认为是最有效的防御。
Denial of Service (DoS) attacks is one of the major threats and among the hardest security problems in the Internet world. Of particular concern are Distributed Denial of Service (DDoS) attacks, whose impact can be proportionally severe. With little or no advance warning, an attacker can easily exhaust the computing resources of its victim within a short period of time. In this paper, we study the impact of a UDP flood attack on TCP throughput, round-trip time, and CPU utilization for a Web Server with the new generation of Linux platform, Linux Ubuntu 13. This paper also evaluates the impact of various defense mechanisms, including Access Control Lists (ACLs), Threshold Limit, Reverse Path Forwarding (IP Verify), and Network Load Balancing. Threshold Limit is found to be the most effective defense.