İçeriğe geç
akaturk Akademik ölçüm

Makale detayı · 2024

Flexible and Lightweight Mitigation Framework for Distributed Denial-of-Service Attacks in Container-Based Edge Networks Using Kubernetes

IEEE Access

YÖKSİS OpenAlex Açık erişim · gold SJR Q1 JCR Q2 Atıf 13 Üst %10 Yüzdelik 90.2% FWCI 2.62
Yıl
2024
ISSN
2169-3536
Tür
article

Veri kaynağı ayrımı

  • YÖKSİS YÖKSİS makale kaydı
  • OpenAlex OpenAlex zenginleştirmesi (özet, atıf, konular)

Özet

İngilizce (OpenAlex)

Mobile Edge Computing (MEC) has a significant potential to become more prevalent in Fifth Generation (5G) networks, requiring resource management that is lightweight, agile, and dynamic. Container-based virtualization platforms, such as Kubernetes, have emerged as key enablers for MEC environments. However, network security and data privacy remain significant concerns, particularly due to Distributed Denial-of-Service (DDoS) attacks that threaten the massive connectivity of end-devices. This study proposes a defense mechanism to mitigate DDoS attacks in container-based MEC networks using Kubernetes. The mechanism dynamically scales Containerized Network Functions (CNFs) with auto-scaling through an Intrusion Detection and Prevention System (IDPS). The architecture of the proposed mechanism leverages distributed edge clusters and Kubernetes to manage resources and balance the load of IDPS CNFs. Experiments conducted in a real MEC environment using OpenShift and Telco-grade MEC profiles demonstrate the effectiveness of the proposed mechanism against Domain Name System (DNS) flood and Yo-Yo attacks. Results also verify that Kubernetes efficiently meets the lightweight, agile, and dynamic resource management requirements of MEC networks.

Konular

  • Network Security and Intrusion Detection
  • Software-Defined Networks and 5G
  • Smart Grid Security and Resilience

Birincil konu Network Security and Intrusion Detection

Yazarlar

  1. SARP KÖKSAL
  2. FERHAT ÖZGÜR ÇATAK
  3. YASER DALVEREN İZMİR BAKIRÇAY ÜNİVERSİTESİ