Publication:
LogDoS: a novel logging-based DDoS prevention mechanism in path identifier-based information centric networks

dc.contributor.coauthorAl-Duwairi, Basheer
dc.contributor.departmentDepartment of Computer Engineering
dc.contributor.kuauthorÖzkasap, Öznur
dc.contributor.kuauthorUysal, Ahmet
dc.contributor.kuauthorKocaoğullar, Ceren
dc.contributor.kuauthorYıldırım, Kaan
dc.contributor.kuprofileFaculty Member
dc.contributor.otherDepartment of Computer Engineering
dc.contributor.schoolcollegeinstituteCollege of Engineering
dc.contributor.yokid113507
dc.contributor.yokidN/A
dc.contributor.yokidN/A
dc.contributor.yokidN/A
dc.date.accessioned2024-11-09T13:07:16Z
dc.date.issued2020
dc.description.abstractInformation Centric Networks (ICNs) have emerged in recent years as a new networking paradigm for the next-generation Internet. The primary goal of these networks is to provide effective mechanisms for content distribution and retrieval based on in-network content caching. Several network architectures were proposed in recent years to realize this communication model. This include Named Data Networks (NDN) and Path-Identifier (PID) based ICN. This paper proposes LogDoS as a novel mechanism to address the problem of data flooding attacks in PID-based ICNs. The proposed LogDoS mechanism is a unique hybrid approach that combines the best of NDN networks and PID-based ICNs, and it is the first to employ Bloom-filter based logging approach in a novel way to filter attack traffic efficiently. In this context, we develop and model three versions of LogDoS with varying levels of storage overhead at LogDoS-enabled routers. Extensive simulation experiments show that LogDoS is very effective against DDoS attacks as it can filter more than 99.98% of attack traffic in different attack scenarios while incurring acceptable storage overhead.
dc.description.fulltextYES
dc.description.indexedbyWoS
dc.description.indexedbyScopus
dc.description.openaccessYES
dc.description.publisherscopeInternational
dc.description.sponsoredbyTubitakEuN/A
dc.description.sponsorshipDeanship of Research at Jordan University of Science and Technology
dc.description.versionAuthor's final manuscript
dc.description.volume99
dc.formatpdf
dc.identifier.doi10.1016/j.cose.2020.102071
dc.identifier.eissn1872-6208
dc.identifier.embargoNO
dc.identifier.filenameinventorynoIR02509
dc.identifier.issn0167-4048
dc.identifier.linkhttps://doi.org/10.1016/j.cose.2020.102071
dc.identifier.quartileQ2
dc.identifier.scopus2-s2.0-85092251447
dc.identifier.urihttps://hdl.handle.net/20.500.14288/2574
dc.identifier.wos591706000007
dc.keywordsDDoS
dc.keywordsInformation centric networks
dc.keywordsNetwork security
dc.keywordsPacket logging
dc.keywordsPath identifiers
dc.languageEnglish
dc.publisherElsevier
dc.relation.grantno20190187
dc.relation.urihttp://cdm21054.contentdm.oclc.org/cdm/ref/collection/IR/id/9147
dc.sourceComputers and Security
dc.subjectComputer science
dc.subjectInformation systems
dc.titleLogDoS: a novel logging-based DDoS prevention mechanism in path identifier-based information centric networks
dc.typeJournal Article
dspace.entity.typePublication
local.contributor.authorid0000-0003-4343-0986
local.contributor.authoridN/A
local.contributor.authoridN/A
local.contributor.authoridN/A
local.contributor.kuauthorÖzkasap, Öznur
local.contributor.kuauthorUysal, Ahmet
local.contributor.kuauthorKocaoğullar, Ceren
local.contributor.kuauthorYıldırım, Kaan
relation.isOrgUnitOfPublication89352e43-bf09-4ef4-82f6-6f9d0174ebae
relation.isOrgUnitOfPublication.latestForDiscovery89352e43-bf09-4ef4-82f6-6f9d0174ebae

Files

Original bundle

Now showing 1 - 1 of 1
Thumbnail Image
Name:
9147.pdf
Size:
5.18 MB
Format:
Adobe Portable Document Format