ETRI-Knowledge Sharing Plaform

ENGLISH

성과물

논문 검색
구분 SCI
연도 ~ 키워드

상세정보

학술지 GESNIC: Detection of HTTP-GET Flooding Attacks for Web Server Protection
Cited 0 time in scopus Download 10 time Share share facebook twitter linkedin kakaostory
저자
김현주, 김병구, 김대원, 김익균, 정태명
발행일
201308
출처
Information : An International Interdisciplinary Journal, v.16 no.8(B), pp.6041-6054
ISSN
1343-4500
출판사
International Information Institute
협약과제
13MS1200, 신뢰기반 클라우스 컴퓨팅 서비스를 위한 알려지지 않은 가상화 기반 악성행위 탐지 및 분석기술 개발, 김익균
초록
Recently Distributed Denial-of-Service (DDoS) attacks are increasing in the application-layer attacks more than 70% of DDoS attacks with non IP spoofing. These DDoS attacks still dominate the ranking of cyber threats. It is a great challenge to accurately detect and intercept the DDoS attacks on high speed network. In particular, HTTP-GET flooding attacks are increasing day by day. Therefore, we propose the web server protection scheme against HTTP-GET flooding attacks. Most of all, it was implemented in our Gigabit Ethernet Secure Network Interface Controller (GESNIC) for the high performance DDoS prevention. Our GESNIC lets IT administrators protect their Internet servers against various DDoS attacks. It provides the high performance secure logics, which is a kind of security offload engine against TCP and HTTP related DDoS attacks on network interface card. Besides, the secure offload engine has robustness against various DDoS attacks itself and it is independent of server's OS and external network configuration. In summary, installing our GESNIC can make more secure, highly available, and easier to manage. © 2013 International Information Institute.
KSP 제안 키워드
Cyber threats, DDoS attacks, Distributed denial-of-service(DDoS), External Network, Flooding attack, Gigabit Ethernet, High performance, High speed network, IP Spoofing, Internet servers, Network Interface Card