Filtration model for the detection of malicious traffic in large-scale networks
作者: Abdulghani Ali AhmedAman JantanTat-Chee Wan
作者单位: 1Faculty of Computer Systems & Software Engineering, Universiti Malaysia Pahang, Pahang, Malaysia
2School of Computer Sciences, Universiti Sains Malaysia, Penang, Malaysia
刊名: Computer Communications, 2016, Vol.82 , pp.59-70
来源数据库: Elsevier Journal
DOI: 10.1016/j.comcom.2015.10.012
关键词: ECNMalicious trafficQoS regulationsSLA guaranteesUser violations
原始语种摘要: Abstract(#br)This study proposes a capable, scalable, and reliable edge-to-edge model for filtering malicious traffic through real-time monitoring of the impact of user behavior on quality of service (QoS) regulations. The model investigates user traffic, including that injected through distributed gateways and that destined to gateways that are experiencing actual attacks. Misbehaving traffic filtration is triggered only when the network is congested, at which point burst gateways generate an explicit congestion notification (ECN) to misbehaving users. To investigate the behavior of misbehaving user traffic, packet delay variation (PDV) ratios are actively estimated and packet transfer rates are passively measured at a unit time. Users who exceed the PDV bit rates specified in their...
