Mqhele Dlodlo / National University of Science and Technology, PO Box AC 939, Ascot, Bulawayo, Zimbabwe
Amakan Agoni / University of Cape Town
One of the biggest security threat to the availability of service in Fog Computing has been identified as Distributed Denial of Service (DDoS). It prevents other Fog devices and legitimate Users from accessing pool resources from connected IoT devices and other Cloud Providers. This is achieved by flooding the entire network bandwidth to exhaust computing resources. A major attribute of DDoS is IP address spoofing. In this paper, various methods for identifying spoofed IP packets in Fog Computing are discussed. A Host-Based Operating System (OS) fingerprinting that uses both active and passive technique to match the OS of incoming packet from its database was proposed. Consequently, the proposed technique was demonstrated using Xen Cloud Platform (XCP).