User Facilitated Congestion and Attack Mitigation
نویسندگان
چکیده
The IEEE Wireless LAN standard has been a true success story by enabling convenient, efficient and low-cost access to broadband networks for both private and professional use. However, the increasing density and uncoordinated operation of wireless access points, combined with constantly growing traffic demands have started hurting the users’ quality of experience. On the other hand, the emerging ubiquity of wireless access has placed it at the center of attention for network attacks, which not only raises users’ concerns on security but also indirectly affects connection quality due to proactive measures against security attacks. In this work, we introduce an integrated solution to congestion avoidance and attack mitigation problems through cooperation among wireless access points. The proposed solution implements a Partially Observable Markov Decision Process (POMDP) as an intelligent distributed control system. By successfully differentiating resource hampering attacks from overload cases, the control system takes an appropriate action in each detected anomaly case without disturbing the quality of service for end users. The proposed solution is fully implemented on a small-scale testbed, on which we present our observations and demonstrate the effectiveness of the system to detect and alleviate both attack and congestion situations.
منابع مشابه
Spectrum Sensing Data Falsification Attack in Cognitive Radio Networks: An Analytical Model for Evaluation and Mitigation of Performance Degradation
Cognitive Radio (CR) networks enable dynamic spectrum access and can significantly improve spectral efficiency. Cooperative Spectrum Sensing (CSS) exploits the spatial diversity between CR users to increase sensing accuracy. However, in a realistic scenario, the trustworthy of CSS is vulnerable to Spectrum Sensing Data Falsification (SSDF) attack. In an SSDF attack, some malicious CR users deli...
متن کاملModeling and Mitigating the Coremelt Attack
This paper studies the Coremelt attack, a linkflooding Distributed Denial of Service attack that exhausts the bandwidth at a core network link using low-intensity traffics between subverted sources. A dynamical system model is formulated for analyzing the effect of the Coremelt attack on a single-link Transmission Control Protocol (TCP) network. Stability and convergence of the source flow rate...
متن کاملRouting Around Congestion Defeating DDoS Attacks and Adverse Network Conditions via Reactive BGP Routing
In this paper, we present Nyx, the first system to both effectively mitigate modern Distributed Denial of Service (DDoS) attacks regardless of the amount of traffic under adversarial control and function without outside cooperation or an Internet redesign. Nyx approaches the problem of DDoS mitigation as a routing problem rather than a filtering problem. This conceptual shift allows Nyx to avoi...
متن کاملReliable Communication Framework for Congestion Mitigation in Wireless Sensor Network Using Multiple Sinks : A Novel Approach
The proposed system exhibit the issues of congestion in WSN which usually takes place when the quantity of the sensor motes reporting data maximizes towards sink mote. This phenomenon will cause minimization of optimal throughput and loss of valuable data. The proposed system highlights a novel approach for mitigating the ill-effects of traffic congestion in the area of wireless sensor network....
متن کاملUser Centric Wireless Testbed
We propose a user centric wireless testbed that interprets the user as a key component of the network control and operation. The testbed offers programmable entities in both core and access network edges, enabling researchers to implement cognitive and cooperative decision mechanisms for enhancing the end-to-end service experience. Moreover, a basic implementation of the knowledge plane is prov...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2011