Presentation 2015-11-27
Bandwidth Control Method for DDoS Mitigation considering QoS Fairness of users
Kazufumi Yogo, Nobuya Shirai, Masao Aihara,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) In recent years, cyber-attacks tend to increase and be diverse. In particular, DDoS attack, which is possible to consume several hundred Gbps of network resources, has a risk that affects the entire network, not just the victim. Therefore, to protect not only the terminal to be attacked but also the entire network against DDoS attacks are the challenge. In this paper, we propose the novel DDoS mitigation method to solve the challenge and improve the service availability of the users who uses the server to be attacked. Our proposed method limits the bandwidths of multiple gateways on the boundary between the network which the victim is involved in and the external network by SDN technology. Furthermore, to maintain the fairness of the users’ QoS, our method controls bandwidth limits of gateways by setting different values to account for differences in traffic in each gateway. In addition, we show the effectiveness of our proposed method by simulation and evaluation for QoS fairness and service availability of the proposed method.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) Network security / DDoS attack / SDN / Rate limiting
Paper # NS2015-123
Date of Issue 2015-11-19 (NS)

Conference Information
Committee CQ / ICM / NS
Conference Date 2015/11/26(2days)
Place (in Japanese) (See Japanese page)
Place (in English) Niigata University
Topics (in Japanese) (See Japanese page)
Topics (in English) Network Quality, Network Measurement and Management, Network Virtualization, Network Service, General
Chair Kyoko Yamori(Asahi Univ.) / Shingo Ata(Osaka City Univ.) / Atsushi Hiramatsu(NTT-AT)
Vice Chair Takanori Hayashi(NTT) / Hideyuki Shimonishi(NEC) / Kiyohito Yoshihara(KDDI R&D Labs.) / Manabu Nakagawa(NTT Communications) / Hideki Tode(Osaka Pref. Univ.)
Secretary Takanori Hayashi(NEC) / Hideyuki Shimonishi(Osaka Univ.) / Kiyohito Yoshihara(Hitachi) / Manabu Nakagawa(NEC) / Hideki Tode(Univ. of Fukui)
Assistant Masahiro Yamamoto(OKI) / Bo GU(Waseda Univ.) / Hirantha Abeysekera(NTT) / Masao Murata(Fujitsu) / Shohei Kamamura(NTT)

Paper Information
Registration To Technical Committee on Communication Quality / Technical Committee on Information and Communication Management / Technical Committee on Network Systems
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Bandwidth Control Method for DDoS Mitigation considering QoS Fairness of users
Sub Title (in English)
Keyword(1) Network security
Keyword(2) DDoS attack
Keyword(3) SDN
Keyword(4) Rate limiting
1st Author's Name Kazufumi Yogo
1st Author's Affiliation Nippon Telegraph and Telephone Corporation(NTT)
2nd Author's Name Nobuya Shirai
2nd Author's Affiliation Nippon Telegraph and Telephone Corporation(NTT)
3rd Author's Name Masao Aihara
3rd Author's Affiliation Nippon Telegraph and Telephone Corporation(NTT)
Date 2015-11-27
Paper # NS2015-123
Volume (vol) vol.115
Number (no) NS-326
Page pp.pp.69-74(NS),
#Pages 6
Date of Issue 2015-11-19 (NS)