On the Potential of BGP Flowspec for DDoS Mitigation at Two Sources: ISP and IXP

On the Potential of BGP Flowspec for DDoS Mitigation at Two Sources: ISP and IXP
复制标题

关于 BGP Flowspec 在两个来源(ISP 和 IXP)缓解 DDoS 方面的潜力

DOI:
10.1145/3234200.3234209
复制
发表时间:
2018
期刊:
SIGCOMM '18 Proceedings of the ACM SIGCOMM 2018 Conference on Posters and Demos
影响因子:
--
通讯作者:
Wählisch, Matthias
Wählisch, Matthias
中科院分区:
--
文献类型:
--
作者:
Hinze, Nico;Nawrocki, Marcin;Jonker, Mattijs;Dainotti, Alberto;Schmidt, Thomas C.;Wählisch, Matthias

文献摘要

被引文献

相似文献

2结果2.1 ISP镜片数据集。我们看看MAWI数据集,其中包含从日本和美国之间的跨太平洋互联网链接的完整数据包捕获。每个跟踪表示每天15分钟的快照。这些数据明确地注释了DDoS事件,并包括表征每个攻击的流量特征[1]。我们将这些攻击流量特征映射到Flowspec组件,并创建Flowspec规则[3],以保护每个受害者IP地址。
2 RESULTS 2.1 ISP LensData set. We look at the MAWI data set, which contains full packet captures from a transpacific Internet link between Japan and the United States. Each trace represents a 15 minute snapshot per day. The data explicitly annotates DDoS events and includes traffic features that characterize each attack [1]. We map these attack traffic features to Flowspec components and create Flowspec rules [3] which would protect each victim IP address.