On the Potential of BGP Flowspec for DDoS Mitigation at Two Sources: ISP and IXP
On the Potential of BGP Flowspec for DDoS Mitigation at Two Sources: ISP and IXP
复制标题
关于 BGP Flowspec 在两个来源(ISP 和 IXP)缓解 DDoS 方面的潜力
DOI:
10.1145/3234200.3234209
复制
发表时间:
2018
期刊:
影响因子:
--
通讯作者:
Wählisch, Matthias
中科院分区:
文献类型:
--
作者:
Hinze, Nico;Nawrocki, Marcin;Jonker, Mattijs;Dainotti, Alberto;Schmidt, Thomas C.;Wählisch, Matthias
2 RESULTS 2.1 ISP LensData set. We look at the MAWI data set, which contains full packet captures from a transpacific Internet link between Japan and the United States. Each trace represents a 15 minute snapshot per day. The data explicitly annotates DDoS events and includes traffic features that characterize each attack [1]. We map these attack traffic features to Flowspec components and create Flowspec rules [3] which would protect each victim IP address.