International Journal of Computer Network and Information Security(IJCNIS)

ISSN: 2074-9090 (Print), ISSN: 2074-9104 (Online)

Published By: MECS Press

IJCNIS Vol.7, No.8, Jul. 2015

Destination Address Entropy based Detection and Traceback Approach against Distributed Denial of Service Attacks

Full Text (PDF, 1169KB), PP.9-20

Abhinav Bhandari, A.L Sangal, Krishan Kumar

Index Terms

DDoS attacks;data center;entropy;aver-age entropy;differential entropy;traceback


With all the brisk growth of web, distributed denial of service attacks are becoming the most serious issues in a data center scenarios where lot many servers are deployed. A Distributed Denial of Service attack gen-erates substantial packets by a large number of agents and can easily tire out the processing and communication resources of a victim within very less period of time. Defending DDoS problem involved several steps from detection, characterization and traceback in order todomitigation. The contribution of this research paper is a lot more. Firstly, flooding based DDoS problems is detected using obtained packets based entropy approach in a data center scenario. Secondly entropy based traceback method is applied to find the edge routers from where the whole attack traffic is entering into the ISP domain of the data center. Various simulation scenarios using NS2 are depicted in order to validate the proposed method using GT-ITM primarily based topology generators. Information theory based metrics like entropy; average entropy and differential entropy are used for this purpose.

Abhinav Bhandari, A.L Sangal, Krishan Kumar,"Destination Address Entropy based Detection and Traceback Approach against Distributed Denial of Service Attacks", IJCNIS, vol.7, no.8, pp.9-20, 2015.DOI: 10.5815/ijcnis.2015.08.02


