How to Test DoS Defenses

Executive Summary

DoS defense evaluation methods influence how well test results predict performance in real deployment. This paper surveys existing approaches and criticizes their simplicity and the lack of realism. The authors summarize the work on improving DoS evaluation via development of standardized benchmarks and performance metrics. They end with guidelines on efficiently improving DoS evaluation, in the short and in the long term. Denial of service has been a pressing Internet security problem for almost a decade. During that time, attacks have evolved from naive and limited to sophisticated and large-scale, and many defenses have been proposed. While much attention has been paid to design of effective solutions, little has been done to design sound, realistic tests to evaluate these solutions.

