TY - GEN
T1 - Quantifying distributed system stability through simulation
T2 - UKSim/AMSS 1st International Conference on Intelligent Systems, Modelling and Simulation, ISMS 2010
AU - Demir, Omer
AU - Khan, Bilal
N1 - Copyright:
Copyright 2010 Elsevier B.V., All rights reserved.
PY - 2010
Y1 - 2010
N2 - We investigate the stability properties of a novel agent-based system for the detection of network bandwidthbased distributed denial of service (DDoS) attacks. The proposed system provides a description of the structure of flows which comprise the DDoS attack. In doing so, it facilitates DDoS mitigation at or near attack traffic sources. The constituent agents within the system operate at the inter autonomous system (AS) level, comprising a distributed collection of IP-layer network taps which self-organize in response to attack flows. We formalize the notion of stability for the proposed system, and show how we can use simulation to identify regions of instability within the system's parameter space. We then modify our system design to circumvent the uncovered singularities, and demonstrate the efficacy and tradeoffs implicit in our redesigned system.
AB - We investigate the stability properties of a novel agent-based system for the detection of network bandwidthbased distributed denial of service (DDoS) attacks. The proposed system provides a description of the structure of flows which comprise the DDoS attack. In doing so, it facilitates DDoS mitigation at or near attack traffic sources. The constituent agents within the system operate at the inter autonomous system (AS) level, comprising a distributed collection of IP-layer network taps which self-organize in response to attack flows. We formalize the notion of stability for the proposed system, and show how we can use simulation to identify regions of instability within the system's parameter space. We then modify our system design to circumvent the uncovered singularities, and demonstrate the efficacy and tradeoffs implicit in our redesigned system.
KW - Agent-based
KW - Distributed denial of service
KW - Flow reconstruction
KW - Simulation
KW - Stability
UR - http://www.scopus.com/inward/record.url?scp=77950939984&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=77950939984&partnerID=8YFLogxK
U2 - 10.1109/ISMS.2010.90
DO - 10.1109/ISMS.2010.90
M3 - Conference contribution
AN - SCOPUS:77950939984
SN - 9780769539737
T3 - ISMS 2010 - UKSim/AMSS 1st International Conference on Intelligent Systems, Modelling and Simulation
SP - 312
EP - 317
BT - ISMS 2010 - UKSim/AMSS 1st International Conference on Intelligent Systems, Modelling and Simulation
Y2 - 27 January 2010 through 29 January 2010
ER -