Back to Search
Start Over
A method of DDoS attack detection using HTTP packet pattern and rule engine in cloud computing environment
- Source :
- Soft Computing. 18:1697-1703
- Publication Year :
- 2014
- Publisher :
- Springer Science and Business Media LLC, 2014.
-
Abstract
- Cloud computing is a more advanced technology for distributed processing, e.g., a thin client and grid computing, which is implemented by means of virtualization technology for servers and storages, and advanced network functionalities. However, this technology has certain disadvantages such as monotonous routing for attacks, easy attack method, and tools. This means that all network resources and operations are blocked all at once in the worst case. Various studies such as pattern analyses and network-based access control for infringement response based on Infrastructure as a Service, Platform as a Service and Software as a Service in cloud computing services have therefore been recently conducted. This study proposes a method of integration between HTTP GET flooding among Distributed Denial-of-Service attacks and MapReduce processing for fast attack detection in a cloud computing environment. In addition, experiments on the processing time were conducted to compare the performance with a pattern detection of the attack features using Snort detection based on HTTP packet patterns and log data from a Web server. The experimental results show that the proposed method is better than Snort detection because the processing time of the former is shorter with increasing congestion.
- Subjects :
- Web server
Computer science
business.industry
Network packet
Software as a service
Denial-of-service attack
Access control
Cloud computing
Virtualization
computer.software_genre
Theoretical Computer Science
Thin client
Utility computing
Grid computing
Server
Geometry and Topology
business
computer
Software
Computer network
Subjects
Details
- ISSN :
- 14337479 and 14327643
- Volume :
- 18
- Database :
- OpenAIRE
- Journal :
- Soft Computing
- Accession number :
- edsair.doi...........07fd602ee9f35e3fa0e1ceb96725d391
- Full Text :
- https://doi.org/10.1007/s00500-014-1250-8