UK ProgNet Workshop, 1st December 2004
TIK ETH Zürich
Adaptive Distributed Distributed Traffic Traffic Adaptive - - PowerPoint PPT Presentation
Adaptive Distributed Distributed Traffic Traffic Adaptive Adaptive Distributed Traffic Control Service Service for for DDoS DDoS Attack Attack Control Control Service for DDoS Attack Mitigation Mitigation Mitigation Bernhard Plattner,
UK ProgNet Workshop, 1st December 2004
TIK ETH Zürich
TIK ETH Zürich
2
Approximately 1980-83 Xerox, 1970-73 Ethernet Apple Lisa, 1983 Xerox Alto, 1972 2-D Graphical User Interface IBM 5150 (PC): 1981 Intel 4004: 1971 Xerox Alto, 1972 PCs Not here yet! 1969? 1982? 1993? 1996? 2004? Active Networks System IV: 1982 Sun Workstation with BSD: 1982 Edition 1: 1970 UNIX First commercial routers (Cisco Systems): 1986 Internet: 1973 TCP/IP Entry into market Research / basic technology development Landmark technology leading to paradigm shift
TIK ETH Zürich
3
TIK ETH Zürich
4
TIK ETH Zürich
5
TIK ETH Zürich
6
TIK ETH Zürich
7
TIK ETH Zürich
8
From:Xi (spoofed) To: Victim V … attack packet From: Xi (spoofed) To: Zombie Zi … control packet From:Xi (spoofed) To: Master Mi … control packet
TIK ETH Zürich
9
TIK ETH Zürich
10
TIK ETH Zürich
11
TIK ETH Zürich
12
TIK ETH Zürich
13
TIK ETH Zürich
14
TIK ETH Zürich
15
TIK ETH Zürich
16
TIK ETH Zürich
17
TIK ETH Zürich
18
Network management ISP 2 Network management ISP 1 ISP 1 Network user Internet number authority ISP 2
Adapt. Device
Traffic control service provider registration control Servers Internet
Adapt. Device Adapt. Device Adapt. Device
TIK ETH Zürich
19
TIK ETH Zürich
20
TIK ETH Zürich
21
TIK ETH Zürich
22
TIK ETH Zürich
23
UK ProgNet Workshop, 1st December 2004
TIK ETH Zürich