• DocumentCode
    3659601
  • Title

    On selection of attributes for entropy based detection of DDoS

  • Author

    Sidharth Sharma;Santosh Kumar Sahu;Sanjay Kumar Jena

  • Author_Institution
    Department of Computer Science, National Institute Of Technology, Rourkela, India
  • fYear
    2015
  • Firstpage
    1096
  • Lastpage
    1100
  • Abstract
    Distributed Denial of service (DDoS) attack is an attempt to prevent the legitimate users from using services provided by service providers. This is done through flooding their server with the unnecessary traffic. These attacks are performed on some prestigious web sites like Yahoo, Amazon and on various cloud service providers. The severity of the attack is very high, as a result the server goes down for the indefinite period of time. To detect such attempts, various methods were proposed. In this paper, an entropy-based approach is used to detect the DDoS attack. We have analyzed the effect on the entropy of all the useful packet attributes during DDoS attack and tested their usefulness against famous types of distributed denial of service attacks. During analysis, we have explained the proper choice of attributes one should make to get a better threshold during DDoS detection.
  • Keywords
    "Entropy","IP networks","Ports (Computers)","Computer crime","Servers","Protocols","Floods"
  • Publisher
    ieee
  • Conference_Titel
    Advances in Computing, Communications and Informatics (ICACCI), 2015 International Conference on
  • Print_ISBN
    978-1-4799-8790-0
  • Type

    conf

  • DOI
    10.1109/ICACCI.2015.7275756
  • Filename
    7275756