Por favor, use este identificador para citar o enlazar este ítem:
https://hdl.handle.net/10495/28947
Registro completo de metadatos
Campo DC | Valor | Lengua/Idioma |
---|---|---|
dc.contributor.advisor | Botero Vega, Juan Felipe | - |
dc.contributor.author | Martínez Osorio, Jorge Steven | - |
dc.date.accessioned | 2022-06-03T16:56:22Z | - |
dc.date.available | 2022-06-03T16:56:22Z | - |
dc.date.issued | 2022 | - |
dc.identifier.uri | http://hdl.handle.net/10495/28947 | - |
dc.description.abstract | ABSTRACT: DDoS/DoS attacks are one of the most used attacks by cybercriminals. Due to their huge impact in traditional or novel network architectures, these kinds of attacks can make that the biggest websites fail. The novel Network Functions Virtualizations (NFV) architecture can also be affected by the external attacks, and the DDoS/DoS also affect the NFV layers, being the Net- work Functions Virtualization Infrastructure (NFVI) the most critical layer as it hosts the major part of the attack that also affect the other layers. This fact makes the NFV architecture an interesting target for the attackers. There are many different kinds of traditional techniques used for DDoS/DoS attack detection, some of them include Artificial Intelligence, Intrusion Detection Systems (IDSs), Deep packet inspection (DPI). Most of them are well known and have remained unchanged during the last few years. In this work, we implement a novel technique called Gaussian Mixture Model (GMM), normally used in other scientific or engineer- ing areas, to detect DDoS/DoS cyberattacks in a real NFV environment. Moreover, this work developed a mitigation strategy to avoid the negative impact caused by DDoS/DoS attacks, inside the Software Defined Networking (SDN)-NFV environment. Finally, this work presents an additional strategy as a complement to the aforemen- tioned mitigation strategy to cover all aspects that can affect Web service availability. This strategy looks for the implementation of a load balancer to distribute the network traffic through a pool of servers to avoid the situation in which thousands or millions of users sent requests to the Web service and provoking, denial of service with legiti- mate traffic. As a results, this work proves that the novel Machine Learning (ML) technique (GMM) implemented to prevent the attack was very powerful blocking around 1.3 million of DDoS/DoS packets (this amount of traffic represents around 90% of the incoming traffic in this test) sent by the attacker, allowing the Web server to continue to provide the service without any interruption. Also, the load balancing strategy was able to cover and manage situations with a huge volume of traffic requests sent to a Web server and proving that it is capable to preserve the service availability and the benefit of using it was over 36% much efficient in contrast to not using it. This work performs the implementation of the previously mentioned strategies and shows their benefits in a real NFV environment where the system was able to mitigate the DDoS/DoS attacks and avoid the negative impact caused by thousands of users, guaranteeing the service availability exposed in the NFV environment. | spa |
dc.format.extent | 88 | spa |
dc.format.mimetype | application/pdf | spa |
dc.language.iso | eng | spa |
dc.type.hasversion | info:eu-repo/semantics/draft | spa |
dc.rights | info:eu-repo/semantics/openAccess | spa |
dc.rights.uri | http://creativecommons.org/licenses/by-nc-sa/2.5/co/ | * |
dc.title | Detection and Mitigation of DDoS/Dos Security threats in an NFV Architecture | spa |
dc.type | info:eu-repo/semantics/masterThesis | spa |
dc.publisher.group | Grupo de Investigación en Telecomunicaciones Aplicadas (GITA) | spa |
oaire.version | http://purl.org/coar/version/c_b1a7d7d4d402bcce | spa |
dc.rights.accessrights | http://purl.org/coar/access_right/c_abf2 | spa |
thesis.degree.name | Maestría en Ingeniería de Telecomunicaciones | spa |
thesis.degree.level | Maestría | spa |
thesis.degree.discipline | Facultad de Ingeniería. Maestría en Ingeniería de Telecomunicaciones | spa |
thesis.degree.grantor | Universidad de Antioquia | spa |
dc.rights.creativecommons | https://creativecommons.org/licenses/by-nc-sa/4.0/ | spa |
dc.publisher.place | Medellín - Colombia | spa |
dc.type.coar | http://purl.org/coar/resource_type/c_bdcc | spa |
dc.type.redcol | https://purl.org/redcol/resource_type/TM | spa |
dc.type.local | Tesis/Trabajo de grado - Monografía - Maestría | spa |
dc.subject.lemb | Aprendizaje automático (inteligencia artificial) | - |
dc.subject.lemb | Machine Learning | - |
dc.subject.lemb | Seguridad en computadores | - |
dc.subject.lemb | Computer security | - |
dc.subject.agrovoc | Mitigation | - |
dc.subject.agrovoc | Mitigación | - |
dc.subject.agrovoc | Detection | - |
dc.subject.agrovoc | Detección | - |
dc.subject.proposal | Network Functions Virtualizations (NFV) | spa |
dc.subject.proposal | Software Defined Networking (SDN) | spa |
dc.subject.proposal | Gaussian Mixture Model (GMM) | spa |
dc.subject.proposal | Universal Backgfround Model (UBM) | spa |
dc.subject.proposal | Distributed Denial of Service (DDoS) | spa |
dc.subject.proposal | Denial of Service (DoS) | spa |
dc.subject.agrovocuri | http://aims.fao.org/aos/agrovoc/c_10a6fbd8 | - |
dc.subject.agrovocuri | http://aims.fao.org/aos/agrovoc/c_a97eb278 | - |
Aparece en las colecciones: | Maestrías de la Facultad de Ingeniería |
Ficheros en este ítem:
Fichero | Descripción | Tamaño | Formato | |
---|---|---|---|---|
Martinezjorge_Detection_Mitigation_NFV_DDoS.pdf | Tesis de maestría | 2.53 MB | Adobe PDF | Visualizar/Abrir |
Este ítem está sujeto a una licencia Creative Commons Licencia Creative Commons