A queueing analysis for the denial of service (DoS) attacks in computer networks

被引:44
作者
Wang, Yang
Lin, Chuang
Li, Quan-Lin
Fang, Yuguang [1 ]
机构
[1] Tsinghua Univ, Dept Comp Sci & Technol, Beijing 100084, Peoples R China
[2] Tsinghua Univ, Dept Ind Engn, Beijing 100084, Peoples R China
[3] Univ Florida, Dept Elect & Comp Engn, Gainesville, FL 32611 USA
基金
中国国家自然科学基金; 美国国家科学基金会;
关键词
DoS attack; network security; queueing; connection loss probability;
D O I
10.1016/j.comnet.2007.02.011
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In most network security analysis, researchers mainly focus on qualitative studies on security schemes and possible attacks, and there are few papers on quantitative analysis in the current literature. In this paper, we propose one queueing model for the evaluation of the denial of service (DoS) attacks in computer networks. The network under DoS attacks is characterized by a two-dimensional embedded Markov chain model. With this model, we can develop a memory-efficient algorithm for finding the stationary probability distribution which can be used to find other interesting performance metrics such as the connection loss probability and buffer occupancy percentages of half-open connections for regular traffic and attack traffic. Different from previous works in the literature, this paper gives a more general analytical approach to the study of security measures of a computer network under DoS attacks. We hope that our approach opens a new avenue to the quantitative evaluation of more complicated security schemes in computer networks. (c) 2007 Elsevier B.V. All rights reserved.
引用
收藏
页码:3564 / 3573
页数:10
相关论文
共 17 条
[1]  
[Anonymous], 2003, 2003 C APPL TECHNOLO, P99, DOI 10.1145/863955.863968
[2]  
[Anonymous], FROEHLICH KENT ENCY
[3]   Defending against flooding-based distributed denial-of-service attacks: A tutorial [J].
Chang, RKC .
IEEE COMMUNICATIONS MAGAZINE, 2002, 40 (10) :42-51
[4]   MATRIX MULTIPLICATION VIA ARITHMETIC PROGRESSIONS [J].
COPPERSMITH, D ;
WINOGRAD, S .
JOURNAL OF SYMBOLIC COMPUTATION, 1990, 9 (03) :251-280
[5]  
Huang Q, 2003, 2003 IEEE PACIFIC RIM CONFERENCE ON COMMUNICATIONS, COMPUTERS, AND SIGNAL PROCESSING, VOLS 1 AND 2, CONFERENCE PROCEEDINGS, P41
[6]  
HUANG Q, 2003, P C INF SCI SYST J H, P12
[7]  
KHAN S, P 2005 IEEE WORKSH I, P266
[8]   A new monsoon index and the geographical distribution of the global monsoons [J].
Li Jianping ;
Zeng Qingcun .
Advances in Atmospheric Sciences, 2003, 20 (2) :299-302
[9]   Heavy-tailed asymptotics of stationary probability vectors of markov chains of GI/G/1 type [J].
Li, QL ;
Zhao, YQQ .
ADVANCES IN APPLIED PROBABILITY, 2005, 37 (02) :482-509
[10]  
Li QL., 2004, OBSERVATION THEORY M, P545, DOI [10.1142/9789812791139_0027, DOI 10.1142/9789812791139_0027]