Title :
Honeypots for distributed denial-of-service attacks
Author :
Weiler, Nathalie
Author_Institution :
Comput. Eng. & Networks Lab., Swiss Fed. Inst. of Technol., Switzerland
Abstract :
Distributed denial-of-service attacks are still a big threat to the Internet. Several proposals for coping with the attacks have been made, but none are successful by themselves. In this paper, we present a system that helps to defend a network from DDoS attacks. In addition to state of the art active and passive security defences, we propose a honeypot for such attacks. The goal is to simulate convincingly success of the compromise of a system to a potential DDoS attacker. Thereby, we can implement lessons learned by the honeypot in other systems to strengthen them against such attacks. On the other hand, we protect the rest of our network infrastructure from the impact of such an attack.
Keywords :
Internet; telecommunication security; Internet; active security defences; distributed denial of service attacks; honeypots; network infrastructure protection; passive security defences; Communication system traffic control; Computer crime; Computer networks; Distributed computing; IP networks; Laboratories; Proposals; Protection; Web and internet services; Web server;
Conference_Titel :
Enabling Technologies: Infrastructure for Collaborative Enterprises, 2002. WET ICE 2002. Proceedings. Eleventh IEEE International Workshops on
Print_ISBN :
0-7695-1748-X
DOI :
10.1109/ENABL.2002.1029997