期刊文献+

一种基于SSNFF的DDOS入侵监测模型

A DDOS intrusion detection model based on SSNFF
下载PDF
导出
摘要 针对分布式拒绝服务攻击(DDOS)网络攻击,提出了一种新的基于小波分析的空间相关性选择正常流算法(SSNFF)的入侵检测模型.该模型利用SSNFF算法进行DDOS信号的提取,对提取的DDOS信号利用基于极大曲线长度阈值的去噪算法与阶越点判定算法进行入侵发生点的检测,克服了原有利用模极大值检测入侵点算法中不同幅值突变大小对检测性能的影响,进而给出一个使用中的判定模型,并对实际采集到的网络流量和仿真攻击流量的混合流做了计算机模拟验证,最后给出试验结果并进行了分析. A model for intrusion detection based on spatially selection normal flow filtration (SSNFF) is presented to deal with the network attacks such as distributed denial of service (DDOS) signals. It uses SSNFF algorithm to extract DDOS signal. Then a detection for intrusion node is performed using both denoising algorithm based on maximal curve length threshold and step node determination algorithm, thus eliminating the influence of amplitude variations on detection performance in the algorithm based on maximal modulus. Finally a model of DDOS intrusion detection is given. Computer simulations were made on the detection method for a real data set involving the normal web traffic collected from web server plus the DDOS attack flow. Some results are reported with relevant concluding remarks.
作者 徐勇 陶新民
出处 《应用科技》 CAS 2008年第9期14-17,共4页 Applied Science and Technology
关键词 入侵检测 SSNFF DDOS 极大曲线长度阈值 模极大值 阶越点 intrusiondetection SSNFF DDOS maximalcurvelengththreshold maximalmodulusvalue stepnode
  • 相关文献

参考文献5

二级参考文献24

  • 1李军浩,梁岗岩,路俊勇,李彦明,任稳柱.钳位型SPD带电检测仪的研制[J].高压电器,2005,41(3):212-214. 被引量:5
  • 2魏修森.仪征泵站雷害事故报导及简要分析[J].电网技术,1996,20(8):18-19. 被引量:8
  • 3陈小川.氧化锌阀片2ms方波击穿机理分析[J].高电压技术,1996,22(4):76-78. 被引量:6
  • 4Chang R K C, Defending against flooding-based distributed denial-of-service attacks:a tutorial[J],Communications Magazine,IEEE,2002; 40(10).
  • 5Xianjun Geng,Whinston A B.Defeating distributed denim of service attacks[J].IT Professional,2000;2(4) :36-42.
  • 6Laura Feinstein,Dan Schnackenberg,Ravindra Balupari et al.Statistical Approaches to DDoS Attack Detection and Response[C].In:DARPA Information Survivability Conference and Exposition, Proceedings, IEEE,2003 : 303-314.
  • 7Roshan Thomas,Brian Mark,Tommy Johnson et al, NetBouncer:Client-legitimacy-based High-performance DDoS Filtering[C].In:Proceedings of the DARPA Information Survivability Conference and Exposition, IEEE, 2003.
  • 8Stephane Mallat ,Wen Liang Hwang.Singularity Detection and Processing with Wavelets[J].IEEE TRANSACTIONS ON INFORMATION THEORY, 1992,38 (2).
  • 9除长发 李国宽.实用小波方法[M].华中科技大学出版社,..
  • 10.[EB/OL].http ://ita.ee.lbl.gov/html/traces.html,.

共引文献51

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部