Archives and Documentation Center
Digital Archives

Filtering based defense mechanisms against DDOS attacks for core networks

Show simple item record

dc.contributor Ph.D. Program in Computer Engineering.
dc.contributor.advisor Alagöz, Fatih.
dc.contributor.author Kalkan, Kübra.
dc.date.accessioned 2023-03-16T10:13:47Z
dc.date.available 2023-03-16T10:13:47Z
dc.date.issued 2016.
dc.identifier.other CMPE 2016 K36 PhD
dc.identifier.uri http://digitalarchive.boun.edu.tr/handle/123456789/12613
dc.description.abstract In this thesis, we present filtering based defense mechanisms against Distributed Denial of Service (DDoS) attacks for core networks. Initially, several filtering techniques are analyzed and their advantages and disadvantages are presented. A comparative classification of these methods is provided for security analysts. Classification results suggest that there are a few filtering methods that are both proactive and collaborative. Proactivity provides prevention of attacks before it spreads whereas collaboration enables getting knowledge about di↵erent points of the network and deciding filters together. Thus, we proposed a proactive and collaborative model called ScoreForCore. It is a statistical packet based defense mechanism that selects the most appropriate attributes for current attack traffic. Our results suggest that the success of the system’s behavior on legal and attack packets increased considerably. This strategy is also convenient for current emerging technology for core networks, called Software Defined Networking (SDN). It has several problems related to security that are largely induced by the centralized control paradigm. In that regard, DDoS attacks are specifically valid for SDN environment. Several defense mechanisms in SDN environment are analyzed and comparative classification is provided for rendering the current state of the art in the literature. Then, our defense strategy is applied on SDN environment with capable switches. This mechanism’s(SDNScore) results suggest that it gives perfect results for several known attacks and 84% success for an unknown attack. Since there is a trade-o↵ between SDN paradigm and capable switches in SDNScore, we improved it and proposed another model called Joint Entropy based Scoring for SDN (JESS) that carries all burden to the controller and does not need capable switches. The results suggest that it is an elegant defense method for SDN environment.
dc.format.extent 30 cm.
dc.publisher Thesis (Ph.D.) - Bogazici University. Institute for Graduate Studies in Science and Engineering, 2016.
dc.subject.lcsh Computer science.
dc.subject.lcsh Computer Communication Networks.
dc.subject.lcsh Data protection.
dc.title Filtering based defense mechanisms against DDOS attacks for core networks
dc.format.pages xvii, 117 leaves ;


Files in this item

This item appears in the following Collection(s)

Show simple item record

Search Digital Archive


Browse

My Account