Abstract:
Most current volumetric DDoS detection and mitigation schemes utilizing data plane programmability are source-based, yet it is challenging to identify an attacker through...Show MoreMetadata
Abstract:
Most current volumetric DDoS detection and mitigation schemes utilizing data plane programmability are source-based, yet it is challenging to identify an attacker through source analysis because a large number of widespread sources are exploited by the attacker. In this paper, we propose BACKWARD, a victim-centric DDoS attack detection and mitigation scheme that first identifies the victim of the DDoS attack and then only blocks sources that contacted the victim. We implement BACKWARD using the P4 language and present experimental results, which show that BACKWARD is able to achieve higher accuracy in identifying and blocking the attackers compared to the source-based scheme.
Date of Conference: 08-11 January 2023
Date Added to IEEE Xplore: 17 March 2023
ISBN Information: