A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks

Cloud is not exempted from the vulnerability of Distributed Denial of Service (DDoS) attack, a serious threat to any distributed network and has considerably less effective solutions to deploy in the network. This paper introduces a novel mechanism to protect and prevent the cloud from the spurious...

Full description

Bibliographic Details
Main Authors: Jeyanthi N, Mogankumar P. C.
Format: Article
Language:English
Published: Sciendo 2014-09-01
Series:Cybernetics and Information Technologies
Subjects:
Online Access:https://doi.org/10.2478/cait-2014-0034
_version_ 1818309070398947328
author Jeyanthi N
Mogankumar P. C.
author_facet Jeyanthi N
Mogankumar P. C.
author_sort Jeyanthi N
collection DOAJ
description Cloud is not exempted from the vulnerability of Distributed Denial of Service (DDoS) attack, a serious threat to any distributed network and has considerably less effective solutions to deploy in the network. This paper introduces a novel mechanism to protect and prevent the cloud from the spurious packets targeting the depletion of server resources. The army nodes called “Cloud DDoS Attack Protection” (CDAP) nodes are installed at the cloud server farm/ Datacenter (DC). These army nodes act as virtual firewall without destroying the Cloud Infrastructure and improve the availability of DC, even at the time of DDoS attack. By continuously monitoring the incoming packets, CDAP filters the attack packets intruding the Cloud DC. Availability is further improved by handing over the threat detection and attack mitigation to CDAP nodes and by redirecting the malicious user requests to the dump network. The simulation results prove that the introduction of CDAP nodes improve the availability and reduce the response time and the cost incurred.
first_indexed 2024-12-13T07:24:19Z
format Article
id doaj.art-113012ec6fb242f6a3f1bbe28d09d7ba
institution Directory Open Access Journal
issn 1314-4081
language English
last_indexed 2024-12-13T07:24:19Z
publishDate 2014-09-01
publisher Sciendo
record_format Article
series Cybernetics and Information Technologies
spelling doaj.art-113012ec6fb242f6a3f1bbe28d09d7ba2022-12-21T23:55:21ZengSciendoCybernetics and Information Technologies1314-40812014-09-01143718510.2478/cait-2014-0034A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS AttacksJeyanthi N0Mogankumar P. C.1School of Information Technology and Engineering, VIT University, Vellore-632014, Tamilnadu, IndiaSchool of Information Technology and Engineering, VIT University, Vellore-632014, Tamilnadu, IndiaCloud is not exempted from the vulnerability of Distributed Denial of Service (DDoS) attack, a serious threat to any distributed network and has considerably less effective solutions to deploy in the network. This paper introduces a novel mechanism to protect and prevent the cloud from the spurious packets targeting the depletion of server resources. The army nodes called “Cloud DDoS Attack Protection” (CDAP) nodes are installed at the cloud server farm/ Datacenter (DC). These army nodes act as virtual firewall without destroying the Cloud Infrastructure and improve the availability of DC, even at the time of DDoS attack. By continuously monitoring the incoming packets, CDAP filters the attack packets intruding the Cloud DC. Availability is further improved by handing over the threat detection and attack mitigation to CDAP nodes and by redirecting the malicious user requests to the dump network. The simulation results prove that the introduction of CDAP nodes improve the availability and reduce the response time and the cost incurred.https://doi.org/10.2478/cait-2014-0034ddoscdapdatacentervirtual firewallcloud computing
spellingShingle Jeyanthi N
Mogankumar P. C.
A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks
Cybernetics and Information Technologies
ddos
cdap
datacenter
virtual firewall
cloud computing
title A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks
title_full A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks
title_fullStr A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks
title_full_unstemmed A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks
title_short A Virtual Firewall Mechanism Using Army Nodes to Protect Cloud Infrastructure from DDoS Attacks
title_sort virtual firewall mechanism using army nodes to protect cloud infrastructure from ddos attacks
topic ddos
cdap
datacenter
virtual firewall
cloud computing
url https://doi.org/10.2478/cait-2014-0034
work_keys_str_mv AT jeyanthin avirtualfirewallmechanismusingarmynodestoprotectcloudinfrastructurefromddosattacks
AT mogankumarpc avirtualfirewallmechanismusingarmynodestoprotectcloudinfrastructurefromddosattacks
AT jeyanthin virtualfirewallmechanismusingarmynodestoprotectcloudinfrastructurefromddosattacks
AT mogankumarpc virtualfirewallmechanismusingarmynodestoprotectcloudinfrastructurefromddosattacks