Publications

Towards systematic IDS evaluation

Abstract

Defending against Distributed Denial of Service (DDoS) attacks is a challenging problem on the Internet that demands practical and effective solutions. Many DDoS defense technologies have been proposed, developed and commercialized [1, 8, 6, 5, 3, 11]. However, each technology is often evaluated separately under a specific set of conditions and using its own set of measurements and metrics, making it hard to compare performance across a range of defense and intrusion detection systems. As these technologies mature and begin to move from laboratories into real networks, there is a need to systematically evaluate and compare performance for different network scenarios, so that consumers of these technologies can acquire and deploy a solution that best fits their needs. Additionally, a systematic and unbiased evaluation methodology and tools will help producers of defense systems to rapidly evaluate the …

Date
2006
Authors
Calvin Ko, Alefiya Hussain, Stephen Schwab, Roshan Thomas, Brett Wilson
Journal
Proceedings of DETER Community Workshop
Pages
20-23