DDoS Verification and Attack Packet Dropping Algorithm in Cloud Computing
Muhammad Zakarya · 2013
computing has become a noticeable issue for researchers in academia and industry related to the field of computer sciences. DDoS attacks are cool to provoke but their uncovering is a very challenging and dingy task and therefore, an eye-catching weapon for hackers. Hence DDoS torrents do not have familiar appearances; therefore currently existing IDS cannot identify and discover these attacks perfectly. Correspondingly, there implementation is a bamboozling task. In practice, gossip based detection machines are used to detect such types of attacks by exchanging stream of traffic over line but still results in network congestion and have upstairs of superfluous and bonus packets. Keeping the above drawbacks in mind, we have proposed a DDoS detection and prevention mechanism in [1], that has the attractiveness of being easy to adapt and more trustworthy than existing counterparts. We have introduced entropy based detection mechanism for DDoS attack detection. In [2] we have implemented the same algorithm to grids platform, where we obtain an accuracy of 90%. Our proposed solution has no overhead of extra packets, hence resulting in good QoS. In this paper we are going to implement the same algorithm on clouds.