DDoS Attack Tolerant Network using Hierarchical Overlay 


Vol. 14,  No. 1, pp. 45-54, Feb.  2007
10.3745/KIPSTC.2007.14.1.45


PDF
  Abstract

As one of the most threatening attacks, DDoS attack makes distributed multiple agents consume some critical resources at the target within the short time, thus the extent and scope of damage is serious. Against the problems, the existing defenses focus on detection, traceback (identification), and filtering. Especially, in the hierarchical networks, the traffic congestion of a specific node could incur the normal traffic congestion of overall lower nodes, and also block the control traffic for notifying the attack detection and identifying the attack agents. In this paper, we introduce a DDoS attack tolerant network structure using a hierarchical overlay for hierarchical networks, which can convey the control traffic for defense such as the notification for attack detection and identification, and detour the normal traffic before getting rid of attack agents. Lastly, we analyze the overhead of overlay construction, the possibility of speedy detection notification, and the extent of normal traffic transmission in the attack case through simulation.

  Statistics


  Cite this article

[IEEE Style]

M. H. Kim and K. J. Chae, "DDoS Attack Tolerant Network using Hierarchical Overlay," The KIPS Transactions:PartC, vol. 14, no. 1, pp. 45-54, 2007. DOI: 10.3745/KIPSTC.2007.14.1.45.

[ACM Style]

Mi Hui Kim and Ki Joon Chae. 2007. DDoS Attack Tolerant Network using Hierarchical Overlay. The KIPS Transactions:PartC, 14, 1, (2007), 45-54. DOI: 10.3745/KIPSTC.2007.14.1.45.