Traffic-Adaptive Packet Filtering of Denial of Service Attacks

  • Authors:
  • Lukas Kencl;Christian Schwarzer

  • Affiliations:
  • Intel Research, UK;Intel Research, UK

  • Venue:
  • WOWMOM '06 Proceedings of the 2006 International Symposium on on World of Wireless, Mobile and Multimedia Networks
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Traffic-adaptive packet filtering is a mechanism to adjust packet classification methods at run-time to the particular traffic mix a network node is receiving. It has been conjectured previously that such techniques could perform positively when filtering out malicious attack traffic, due to their flow aggregation capabilities. In this work, we present two novel contributions - a first ever working implementation of a traffic adaptive firewall, based on insertion of shortcuts into a search tree, and both a simulated and a real-life performance study of adaptive packet filtering under denial-of-service attack traffic, the outcomes of which support the above conjecture.