Effective and Reliable Countermeasures for Detecting DDOS Attack in IDS
Mohammad Abrahim Wani, Rshma Chawla · International Journal of Engineering Research and · 2015
The most important communication channel now-a- days is the web technology, but this communication channel is threaten by set of actions called intrusions and complicated network based attacks such as denial of service and distributed denial of service attacks. Intrusions are set of actions by which the computing system is taken from secured state to compromised state. Distributed denial of service is an attack by which the legitimated users are victimized for service and resource available. Many research efforts have been proposed to fix these types of attacks, but no optimal solution has been addressed till date. In order to fix this gap a frame work is designed that handles all aspects of DoS/DDoS attacks in IDS. The proposed system has four major components: The information is processed by the controller that is collected from the Mobile Agents and on the detection of DDoS attack takes an appropriate action. The agent based mechanism is used to keep track of all the node details (e.g. bandwidth, node capacity, etc). The filtration unit filters the all incoming traffic and if any denial is detected the data is blocked temporarily and updates the buffer for future record. The filtered IPs are passed to enhanced filter unit where the client has to solve the puzzle for authentication, the puzzle problem uses the resources of illegitimate clients and increase the reliability of the system.