作者: Saman Taghavi Zargar , James Joshi , David Tipper
关键词:
摘要: The success in detecting Distributed Denial of Service (DDoS) flooding attacks is highly dependent on the quality and quantity covered flows by traffic monitoring mechanism that employed any DDoS defense mechanism. In this paper, we propose DiCoTraM, a attack tailored distributed coordinated centrally periodically coordinates responsibilities distributes them among all devices within each autonomous system (AS) while satisfying devices' memory constraints. DiCoTraM monitors such way intended for same destination (possible network/transport level flows) are analyzed together device if there enough to cover those device; hence, can enable detection mechanisms place analyze monitored flows. enabled leads reduced communication overhead problem centralized as they need collect analysis. Moreover, coordination structure eliminates redundant flow routers. We simulate compare with other terms of: overall coverage, coverage. experimental results show compared mechanisms, covers more it has reasonable