LAMP: Prompt Layer 7 Attack Mitigation with Programmable Data Planes

12/13/2018
by   Garegin Grigoryan, et al.
0

While there are various methods to detect application layer attacks or intrusion attempts on an individual end host, it is not efficient to provide all end hosts in the network with heavy-duty defense systems or software firewalls. In this work, we leverage a new concept of programmable data planes, to directly react on alerts raised by a victim and prevent further attacks on the whole network by blocking the attack at the network edge. We call our design LAMP, Layer 7 Attack Mitigation with Programmable data planes. We implemented LAMP using the P4 data plane programming language and evaluated its effectiveness and efficiency in the Behavioral Model (bmv2) environment.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/06/2020

Me Love (SYN-)Cookies: SYN Flood Mitigation in Programmable Data Planes

The SYN flood attack is a common attack strategy on the Internet, which ...
research
02/01/2021

Intelligent Network Layer for Cyber-Physical Systems Security

Cyber-Physical System (CPS) has made a tremendous progress in recent yea...
research
08/03/2018

An SDN-based Approach For Defending Against Reflective DDoS Attacks

Distributed Reflective Denial of Service (DRDoS) attacks are an immanent...
research
04/11/2021

Tracking Normalized Network Traffic Entropy to Detect DDoS Attacks in P4

Distributed Denial-of-Service (DDoS) attacks represent a persistent thre...
research
07/26/2021

Filling the Tax Gap via Programmable Money

We discuss the problem of facilitating tax auditing assuming "programmab...
research
02/19/2019

Detecting Heavy Hitters in the Data-plane

The ability to detect, in real-time, heavy hitters is beneficial to many...
research
03/11/2021

The Curse of Correlations for Robust Fingerprinting of Relational Databases

Database fingerprinting schemes have been widely adopted to prevent unau...

Please sign up or login with your details

Forgot password? Click here to reset