期刊文献+

一种针对DDoS攻击的新型防护机制研究

The Research on A Novel Defense Mechanism of DDoS
下载PDF
导出
摘要 本文提出了一种新型的基于网络流量自相似性的 DDoS 防护机制,给出了该机制的体系结构,其中包括攻击检测、路径定位、特征提取、生成响应策略、实时响应、处理结束等步骤。并在此基础上,对其数据结构和工作机制进行详细的分析和设计。实验证明此方法能够较好地对 DDoS 攻击加以检测和防护,比传统的基于特征匹配的 DDoS 入侵防护方法具有较好的性能。 This paper presents a new defense mechanism of DDoS based on Self-similarity of Network Traffics based on analysis of parameter of Self-similar, first we design a system architecture for it, includes attack detection, route-tracing, characteristic- refining, and so on. And then we mostly research it's data structure and working mechanism. As it showed by the research result this mechanism can detected and defend on DDoS attack, and is more reliable on the recognition of all kinds of DDoS attack than any other method based on character recognize.
出处 《计算机科学》 CSCD 北大核心 2006年第3期101-104,共4页 Computer Science
基金 本文由电子科技大学青年基金支持
关键词 入侵检测 分布式拒绝服务攻击 防护 性能 Intrude detection, DDoS attack, Defense, Performance
  • 相关文献

参考文献6

  • 1Kargl F,Maier J,Weber M.Protecting web servers from distributed denial of service attacks.In:Proc.of 10th Intl.World Wide Web Conference,May 2001.
  • 2罗光春,林夏,卢显良,张骏.一种新型的基于网络流量自相似性的DDoS入侵诊测方法[J].计算机科学,2003,30(12):54-58. 被引量:3
  • 3Leland W,Taqqu M,Willinger W,Wilson D.On the Self-Similar Nature of Ethernet Traffic(Extended Version).IEEE/ACM Transactions on Networking,1994,2 (1).
  • 4Oetiker T.The multi router traffic grapher.In:Proc.of the USENIX Twelfth System Administration Conference LISA Ⅻ,December 1998.
  • 5Case J,Fedor M,Schoffstall M,Davin J.A Simple Network Management Protocol (SNMP):[Technical Report].# RFC 1157,Performance Systems International,MIT Laboratory for Computer Science,May 1990.
  • 6Roesch M.SNORT Lightweight intrusion detection for networks.In:Proc.LISA 99:13th Systems Administration Conference,Nov.1999.

二级参考文献3

共引文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部