Scalable and Robust DDoS Detection Via Universal Monitoring
Vyas Sekar, Carnegie Mellon University
Over the last few years, we have seen a substantial increase in the type, scale and sophistication of Distributed Denial of Service (DDoS) attacks. A first step to any DDoS mitigation strategy is the need for an accurate and robust detection mechanism. Traditional techniques have either relied on Netflow-style sampling or the use of a custom sketching-based monitoring algorithm, but this results in undesirable tradeoffs between fidelity and generality. In this webinar, we will describe our early experiences in using an alternative approach building on the recent promise of Universal Sketching and implementing this using P4 and the Netronome Agilio SmartNIC platform.