In-Network Filtering of Distributed Denial-of-Service Traffic with Near-Optimal Rule Selection

Devkishen Sisodia, Jun Li, Lei Jiao · 2020

A recent trend to mitigate large-scale distributed denial-of-service (DDoS) attacks is in-network filtering, where victims can deploy traffic-filtering rules in networks other than their own. However, given multiple constraints, such as the number of rules a victim can afford to deploy, the set of rules that DDoS defense entities allow a victim to deploy, and the amount of collateral damage to limit, the selection of rules has a large impact on the efficacy of an in-network filtering solution.

Read the paper · More papers on PaperTik