relation: https://eprints.uet.vnu.edu.vn/eprints/id/eprint/2752/ title: Using CPR Metric to Detect and Filter Low-Rate DDoS Flows creator: Kieu, Minh Viet creator: Nguyen, Dai Tho creator: Nguyen, Thanh Thuy subject: Information Technology (IT) description: TCP-targeted low-rate distributed denial-of-service (LDDoS) attacks pose a serious challenge to the reliability and security of the Internet. Among various proposed solutions, we are particularly interested in the Congestion Participation Rate (CPR) metric and the CPR-based approach. Through a simulation study, we show that the existing algorithm cannot simultaneously achieve high TCP throughput while under attack and good fairness performance for new legitimate TCP flows in normal times. We then propose a new version of the CPR-based approach to overcome the tradeoff. Simulation results show that it preserves TCP throughput while under attack fairly well, yet maintains fairness for new TCP flows in normal times. date: 2017-12-07 type: Conference or Workshop Item type: PeerReviewed format: application/pdf language: en identifier: https://eprints.uet.vnu.edu.vn/eprints/id/eprint/2752/1/paper%2040.pdf identifier: Kieu, Minh Viet and Nguyen, Dai Tho and Nguyen, Thanh Thuy (2017) Using CPR Metric to Detect and Filter Low-Rate DDoS Flows. In: The Eighth International Symposium on Information and Communication Technology (SoICT 2017), December 7-8, 2017, Nha Trang, Vietnam. relation: http://soict.org/