Visible to the public Accelerated DDoS Attacks Mitigation using Programmable Data Plane

TitleAccelerated DDoS Attacks Mitigation using Programmable Data Plane
Publication TypeConference Paper
Year of Publication2019
AuthorsKuka, Mário, Vojanec, Kamil, Kučera, Jan, Benáček, Pavel
Conference Name2019 ACM/IEEE Symposium on Architectures for Networking and Communications Systems (ANCS)
Date Publishedsep
Keywordscomposability, DDoS attack mitigation, ddos mitigation, denial-of-service attacks, FPGA, Human Behavior, Metrics, P4, programmable data planes, pubcrawl, resilience, Resiliency, threat mitigation
Abstract

DDoS attacks are a significant threat to internet service or infrastructure providers. This poster presents an FPGA-accelerated device and DDoS mitigation technique to overcome such attacks. Our work addresses amplification attacks whose goal is to generate enough traffic to saturate the victims links. The main idea of the device is to efficiently filter malicious traffic at high-speeds directly in the backbone infrastructure before it even reaches the victim's network. We implemented our solution for two FPGA platforms using the high-level description in P4, and we report on its performance in terms of throughput and hardware resources.

DOI10.1109/ANCS.2019.8901882
Citation Keykuka_accelerated_2019