A Simulation Study of the Proactive Server Roaming for Mitigating Denial of Service Attacks

  • Authors:
  • Chatree Sangpachatanaruk;Sherif M. Khattab;Taieb Znati;Rami Melhem;Daniel Mossé

  • Affiliations:
  • -;-;-;-;-

  • Venue:
  • ANSS '03 Proceedings of the 36th annual symposium on Simulation
  • Year:
  • 2003

Quantified Score

Hi-index 0.01

Visualization

Abstract

The main goal of the NETSEC project is to designand implement a framework for mitigating the effects ofthe node-based and link-based DoS attacks. Our strategy employs three lines of defense. The first line ofdefense is to restrict the access to the defended servicesusing offline service subscription, encryption and othertraditional security techniques. The second line of defense is server roaming, by which we mean the migration of the service from one server to another, wherethe new server has a different IP address. Finally, eachserver and firewall(s) implement resource managementschemes as a third line of defense. For example, deploying separate input queues to allocate different classes ofservice requests. In this paper, we show our simulationstudy on the second line of defense, the server roaming. The design and procedure of the sever roaming onthe NS2 is described. The promising results of applying the server roaming to mitigate the DoS attack inthe simulation are also shown with analysis.