loading...
Defending P2Ps from Overlay Flooding-based DDoS
Xi'an, China September 10-September 14
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ICPP.2007.312007 International Conference on Para ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Yunhao Liu, Hong Kong University of Science and Technology, Hong Kong
Xiaomei Liu, Michigan State University, USA
Chen Wang, Michigan State University, USA
Li Xiao, Michigan State University, USA
flooding-based search mechanism is often used in unstructured P2P systems. Although a flooding-based search mechanism is simple and easy to implement, it is vulnerable to overlay distributed denial-of-service (DDoS) attacks. Most previous security techniques protect networks from network-layer DDoS attacks, but cannot be applied to overlay DDoS attacks. Overlay flooding-based DDoS attacks can be more damaging in that a small number of messages are inherently propagated to consume a large amount of bandwidth and computation resources. We propose a distributed and scalable method, DD-POLICE, to detect malicious nodes in order to defend P2P systems from overlay flooding-based DDoS attacks. We show the effectiveness of DD-POLICE by comprehensive simulation studies. We believe that deploying DD-POLICE will make P2P systems more scalable and robust.
Citation:
Yunhao Liu, Xiaomei Liu, Chen Wang, Li Xiao, "Defending P2Ps from Overlay Flooding-based DDoS," icpp, pp.28, 2007 International Conference on Parallel Processing (ICPP 2007), 2007
Usage of this product signifies your acceptance of the Terms of Use.