• DocumentCode
    3370271
  • Title

    A simulation study of the proactive server roaming for mitigating denial of service attacks

  • Author

    Sanetachatanaruk, C. ; Khattab, Sherif M. ; Znati, Taieb ; Melhem, Rami ; Mosse, Daniel

  • Author_Institution
    Dept. of Inf. Sci. & Telecommun., Pittsburgh Univ., PA, USA
  • fYear
    2003
  • fDate
    30 March-2 April 2003
  • Firstpage
    7
  • Lastpage
    14
  • Abstract
    The main goal of the NETSEC project is to design and implement a framework for mitigating the effects of the node-based and link-based denial of service (DoS) attacks. Our strategy employs three lines of defense. The first line of defense is to restrict the access to the defended services using offline service subscription, encryption and other traditional security techniques. The second line of defense is server roaming, by which we mean the migration of the service from one server to another, where the new server has a different IP address. Finally, each server and firewall(s) implement resource management schemes as a third line of defense. For example, deploying separate input queues to allocate different classes of service requests. We show our simulation study on the second line of defense, the server roaming. The design and procedure of the sever roaming on the NS2 is described. The promising results of applying the server roaming to mitigate the DoS attack in the simulation are also shown with analysis.
  • Keywords
    Internet; client-server systems; digital simulation; security of data; transport protocols; IP address; NETSEC project; NS2; denial of service attacks; encryption; firewall; link-based attacks; node-based attacks; offline service subscription; proactive server roaming; resource management schemes; security techniques; Authentication; Bandwidth; Computational modeling; Computer crime; Cryptography; File servers; Internet; Network servers; Operating systems; Web server;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Simulation Symposium, 2003. 36th Annual
  • ISSN
    1080-241X
  • Print_ISBN
    0-7695-1911-3
  • Type

    conf

  • DOI
    10.1109/SIMSYM.2003.1192793
  • Filename
    1192793