摘要
在压缩边分段采样算法研究改进基础上,分析攻击路径距离、路由器节点流量统计对标记概率的影响,提出一种复合包标记方法。该方法可以优化算法收敛性,降低运算复杂度和重构路径的差错率,使受害者在最短时间内推测出主要攻击路径,能够很好地应用于多个分布式拒绝服务攻击的攻击源追踪中。
Based on the current research on improving the Compressed Edge Fragment Sampling(CEFS) algorithm of Savage, the relations among the distance of the attacking path, the statistics on the traffic of touters, marking probability are analyzed. A new approach of composed packet marking method is proposed. In the new proposal the convergence of mathematic is optimized, computational complexity and the false positive alarm for the victim to reconstruct the attack graph is reduced, a victim can construct major attacking path in minimum time. The method can be used in tracking DDoS attacks of multi-source by establishing a simulated test environment and experiment analysis.
出处
《计算机工程》
CAS
CSCD
北大核心
2009年第10期115-117,共3页
Computer Engineering
基金
甘肃省自然科学基金资助项目(ZS031-A25-015-G)
关键词
拒绝服务攻击
IP追踪
压缩边分段采样算法
Denial of Service(DoS) attack
IP traceback
Compressed Edge Fragment Sampling(CEFS)