期刊名称:International Journal of Computer Science and Information Technologies
电子版ISSN:0975-9646
出版年度:2015
卷号:6
期号:2
页码:1906-1912
出版社:TechScience Publications
摘要:Cloud is the fastest growing computing platform. Researches have demonstrated that the essential issues of Distributed Denial of Service (DDoS) attack and defense is the resource competition between the attackers and defenders. A cloud usually have profound resources and has full control and dynamic allocation capabilities. Therefore, cloud offers us the potential to overcome DDoS Attack. We propose a cloud enabled defense mechanism for internet services against DDoS attacks. We propose a dynamic resource allocation strategy and a shuffling mechanism to compute the optimal reassignment strategy for clients on attacked servers, effectively separating benign clients from attacking clients. The proposed shuffling based moving target mechanism enables effective attack containment using fewer resources than attack dilution strategies using server expansion. Using Amazon EC2 [1] instances we demonstrate that we can successfully mitigate large scale DDoS attack in a small number of shuffles.