Optimized AQM Strategy to Encounter Low-Rate DoS Attacks

A. Karthik Velayudhan, S.A. Arunmozhi


The Internet router typically maintains a set of queues, which schedules data packets from source node to destination node. One such queue management technique is the Active Queue Management (AQM) which efficiently handles congestion control. The Low-rate Denial of Service (LDoS) attacks are those which transmit attack pulses at a low average rate, hence creates congestion, giving way for the legitimate packets to be dropped. Defense against LDoS attacks is a challenging issue, because detection of such low rate attacks is difficult by the routers. Random Early Detection (RED) is one among the AQM algorithms, which helps in defending against LDoS attacks. In this paper, an RED based counter mechanism is proposed, which involves elimination of LDoS attacks. The basic idea behind the proposed work is to detect and filter out low rate attack packets and also to ensure that only legitimate packets enter the queue. For this a randomized time has been incorporated into the AQM system such that the time of enqueueing of packets cannot be predicted by the attackers and the probability of legitimate packets entering the system becomes more. The proposed scheme offers an increased system performance and better TCP throughput


AQM, TCP, RTO, LDoS, RED, Throughput

