题名 | A Defensive OTP-based Mechanism against Application Layer DDoS Attacks |
作者 | |
发表日期 | 2011-12-31 |
会议录名称 | MATERIALS ENGINEERING FOR ADVANCED TECHNOLOGIES, PTS 1 AND 2 影响因子和分区 |
语种 | 英语 |
原始文献类型 | Proceedings Paper |
关键词 | DDoS Attacks OTP Puzzle Web Services Application Layer |
摘要 | In this paper, we present the design and implementation of OTP-DEF, a kernel extension to protect web servers against application layer DDoS attacks. OTP-DEF provides authentication by using OTP-based tests, which is different from other systems that use graphical tests. First of all, according to the load of web server, an OTP-DEF web-server should fall into one of three following modes: normal, suspected attack or confirmed attack mode, and the OTP-DEF authentication mechanism shall only be activated when web-server is in suspected attack mode. Secondly, we use OTP as our puzzle, which can automatically change at the certain time interval. It makes our proposal can defend socially-engineered attack, copy attacks, replay attacks and Brute-Force Attack. Thirdly, OTP-DEF uses an intermediate stage to identify the FP addresses that ignore the test, and persistently bombard the server with requests despite repeated failures at solving the puzzles. These machines are zombies because their intent is to congest the server. Once these machines are identified, OTP-DEF blocks their requests, turns the tests off, and allows access to legitimate users who are unable or unwilling to solve tests. Finally, OTP-DEF requires no modifications to client software. |
出版者 | TRANS TECH PUBLICATIONS LTD |
出版地 | DURNTEN-ZURICH |
ISSN | 1013-9826 |
EISSN | 1662-9795 |
卷号 | 480-481 |
页码 | 769-+ |
DOI | 10.4028/www.scientific.net/KEM.480-481.769 |
页数 | 2 |
WOS类目 | Materials Science, Multidisciplinary |
WOS研究方向 | Materials Science |
WOS记录号 | WOS:000309483200146 |
收录类别 | CPCI ; EI ; SCOPUS |
EI入藏号 | 20112914165805 |
EI主题词 | Web services |
URL | 查看原文 |
Scopus记录号 | 2-s2.0-79960437614 |
通讯作者地址 | [Ye, Xi]Department of Computer Science,Wenzhou Medical College,China |
Scopus学科分类 | Materials Science (all);Mechanics of Materials;Mechanical Engineering |
会议名称 | International Conference on Materials Engineering for Advanced Technologies (ICMEAT2011) |
会议地点 | Singapore, SINGAPORE |
会议日期 | MAY 05-06, 2011 |
引用统计 | |
文献类型 | 会议论文 |
条目标识符 | https://kms.wmu.edu.cn/handle/3ETUA0LF/22034 |
专题 | 第一临床医学院(信息与工程学院)、附属第一医院_计算机与信息管理系 |
通讯作者 | Ye, Xi |
作者单位 | 1.Wenzhou Med Coll, Dept Comp Sci, Wenzhou, Peoples R China; 2.Sun Yat Sen Univ, Sch Software, Guangzhou, Peoples R China |
第一作者单位 | 第一临床医学院(信息与工程学院)、附属第一医院_计算机与信息管理系 |
通讯作者单位 | 第一临床医学院(信息与工程学院)、附属第一医院_计算机与信息管理系 |
第一作者的第一单位 | 第一临床医学院(信息与工程学院)、附属第一医院_计算机与信息管理系 |
推荐引用方式 GB/T 7714 | Ye, Xi,Wen, Wushao,Ye, Yiru. A Defensive OTP-based Mechanism against Application Layer DDoS Attacks[C]. DURNTEN-ZURICH:TRANS TECH PUBLICATIONS LTD,2011:769-+. |
条目包含的文件 | 条目无相关文件。 |
个性服务 |
查看访问统计 |
谷歌学术 |
谷歌学术中相似的文章 |
[Ye, Xi]的文章 |
[Wen, Wushao]的文章 |
[Ye, Yiru]的文章 |
百度学术 |
百度学术中相似的文章 |
[Ye, Xi]的文章 |
[Wen, Wushao]的文章 |
[Ye, Yiru]的文章 |
必应学术 |
必应学术中相似的文章 |
[Ye, Xi]的文章 |
[Wen, Wushao]的文章 |
[Ye, Yiru]的文章 |
相关权益政策 |
暂无数据 |
收藏/分享 |
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。
修改评论