Countering Interest flooding DDoS attacks in NDN Network
Dong-Myung Sul, Sung Hyuk Byun, Jongseck Lee, Namseok Ko · 2021 International Conference on Information and Communication Technology Convergence (ICTC) · 2021
Named Data Networking (NDN), a future Internet architecture, has intrinsic capabilities to effectively cope with Distributed Denial of Service (DDoS) by adopting pull-mode data retrieval approach. Interest flooding, however, was identified as a new type of DDoS attack in NDN. Although several solutions have been proposed in the papers, there are still some drawbacks. In this paper, we propose a novel way to solve the issue by effectively identifying the destination prefixes which are being under attack and rate-limiting only the input faces through which the attack traffic is coming.