LogDos: A Novel Logging-based DDoS Prevention Mechanism in Path Identifier-Based Information Centric Networks

06/02/2020
by   Basheer Al-Duwairi, et al.
0

Information Centric Networks (ICNs) have emerged in recent years as a new networking paradigm for the next-generation Internet. The primary goal of these networks is to provide effective mechanisms for content distribution and retrieval based on in-network content caching. The design of different ICN architectures addressed many of the security issues found in the traditional Internet. Therefore, allowing for a secure, reliable, and scalable communication over the Internet. However, recent research studies showed that these architectures are vulnerable to different types of DDoS attacks. In this paper, we propose a defense mechanism against distributed denial of service attacks (DDoS) in path-identifier based information centric networks. The proposed mechanism, called LogDos, performs GET Message logging based filtering and employs Bloom filter based logging to store incoming GET messages such that corresponding content messages are verified, while filtering packets originating from malicious hosts. We develop three versions of LogDos with varying levels of storage overhead at LogDos-enabled router. Extensive simulation experiments show that LogDos is very effective against DDoS attacks as it can filter more than 99.98 scenarios while incurring acceptable storage overhead.

READ FULL TEXT

page 7

page 12

research
03/01/2018

Boosting the Performance of Content Centric Networking using Delay Tolerant Networking Mechanisms

Content-centric networking (CCN) introduces a paradigm shift from a host...
research
03/02/2021

Information-Centric Networking in Wireless Environments: Security Risks and Challenges

Information-Centric Networking (ICN) has emerged as a paradigm to cope w...
research
03/01/2018

CIDOR: Content Distribution and Retrieval in Disaster Networks for Public Protection

Information-Centric Networking (ICN) introduces a paradigm shift from a ...
research
05/11/2017

Content-based Approach for Vietnamese Spam SMS Filtering

Short Message Service (SMS) spam is a serious problem in Vietnam because...
research
08/08/2023

Capabilities for Distributed Authorization in Information-Centric Networking

Authorization currently introduces partial centralization in otherwise d...
research
01/28/2022

Discriminating Defense Against DDoS Attacks; a Novel Approach

A recent paper (circa 2020) by Osterwile et al., entitled "21 Years of D...

Please sign up or login with your details

Forgot password? Click here to reset