Telephony Denial of Service Defense at Data Plane (TDoSD@DP)

Febro, Aldo, Xiao, Hannan and Spring, William (2018) Telephony Denial of Service Defense at Data Plane (TDoSD@DP). In: IEEE/IFIP Network Operations and Management Symposium : Cognitive Management in a Cyber World, NOMS 2018. Institute of Electrical and Electronics Engineers (IEEE), pp. 1-6. ISBN 9781538634165
Copy

The Session Initiation Protocol (SIP) is an application-layer control protocol used to establish and terminate calls that are deployed globally. A flood of SIP INVITE packets sent by an attacker causes a Telephony Denial of Service (TDoS) incident, during which legitimate users are unable to use telephony services. Legacy TDoS defense is typically implemented as network appliances and not sufficiently deployed to enable early detection. To make TDoS defense more widely deployed and yet affordable, this paper presents TDoSD@DP where TDoS detection and mitigation is programmed at the data plane so that it can be enabled on every switch port and therefore serves as distributed SIP sensors. With this approach, the damage is isolated at a particular switch and bandwidth saved by not sending attack packets further upstream. Experiments have been performed to track the SIP state machine and to limit the number of active SIP session per port. The results show that TDoSD@DP was able to detect and mitigate ongoing INVITE flood attack, protecting the SIP server, and limiting the damage to a local switch. Bringing the TDoS defense function to the data plane provides a novel data plane application that operates at the SIP protocol and a novel approach for TDoS defense implementation.

visibility_off picture_as_pdf

picture_as_pdf
IEEEPDP18_cameraready.pdf
lock
Restricted to Repository staff only

Request Copy
picture_as_pdf

Submitted Version
['licenses_description_other' not defined]

Atom BibTeX OpenURL ContextObject in Span OpenURL ContextObject Dublin Core MPEG-21 DIDL Data Cite XML EndNote HTML Citation METS MODS RIOXX2 XML Reference Manager Refer ASCII Citation
Export

Downloads