Layer-4 Service Differentiation and Resource Isolation

نویسندگان

  • Haining Wang
  • Kang G. Shin
چکیده

While the Differentiated Services (DiffServ) infrastructure is scalable and robust in providing network Quality of Service (QoS), there are serious drawbacks with the services provided by DiffServ: (1) the services are coarse-grained and oneway only; (2) no service differentiation and resource isolation are provided to meta-data packets such as TCP SYN and ACK packets. Moreover, the coarse-grained service differentiation and the lack of resource isolation at IP routers exposes its vulnerability to Distributed Denial of Service (DDoS) attacks [10]. Based on the concept of layer-4 service differentiation and resource isolation, where the transport-layer information is inferred from the IP headers and used for packet classification and resource management, we present a scalable fine-grained DiffServ (sf-DiffServ) architecture that provides fine-grained service differentiation and resource isolation among thinner Behavior Aggregates (BAs). The sfDiffServ architecture consists of a fine-grained QoS classifier and an adaptive weight-based resource manager at IP routers. A two-stage packet classification mechanism is devised to decouple the fine-grained QoS lookup from the routing lookup at core routers. Due to its scalable QoS support for TCP control segments, sf-DiffServ supports bi-directional differentiated services for TCP sessions. Most importantly, the fine-grained resource isolation provided inside the sf-DiffServ is a powerful built-in protection mechanism to counter DDoS attacks, reducing the vulnerability of Internet to DDoS at-

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Transport-Aware IP Routers: A Built-In Protection Mechanism to Counter DDoS Attacks

The lack of service differentiation and resource isolation by current IP routers exposes their vulnerability to Distributed Denial of Service (DDoS) attacks [12], causing a serious threat to the availability of Internet services. Based on the concept of layer-4 service differentiation and resource isolation, where the transport-layer information is inferred from the IP headers and used for pack...

متن کامل

Adaptive QoS Management for the IEEE 802.11 wireless networks

Wireless Internet Service Providers (WISPs) are expected to be the new generation of access providers using the emerging IEEE 802.11 technology. Face to the high competition of providing network services, the WISP have to offer the best service to the users. For this purpose, the WISP networks’ managers need to provide Quality of Service (QoS) with a minimum cost in their wireless networks. The...

متن کامل

Adaptive QoS Management for IEEE 802.11 Future Wireless ISPs

Wireless Internet Service Providers (WISPs) are expected to be the new generation of access providers using the emerging IEEE 802.11 technology. Face to the high competition of providing network services, the WISP have to offer the best service to the users. For this purpose, the WISP networks’ managers need to provide Quality of Service (QoS) with a minimum cost in their wireless networks. The...

متن کامل

Designing General, Composable, and Middleware-independent Grid Infrastructure Tools for Multi-tiered Job Management

We propose a multi-tiered architecture for middleware-independent Grid job management. The architecture consists of a number of services for well-defined tasks in the job management process, offering complete user-level isolation of service capabilities, multiple layers of abstraction, control, and fault tolerance. The middleware abstraction layer comprises components for targeted job submissio...

متن کامل

Isolation and culture of human endometrial derived cells as an in vitro model for future implantation studies

Introduction:  Monthly regeneration of endometrium after cyclical mensturation confirmed the ability of specific population of the cells that presence in the basalis layer and undergone consecutive hormonal changes that could prepared the endometrial layer for probable implantation. These cells, known as, stem cell. The aim of this study was the isolation and culture of human endometrial derive...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2002