摘要
提出一种可以跨区域追踪分布式拒绝服务攻击来源的确定包标记方案,通过将基于中国余数定理的数据包标记算法与DPM-RD方案结合,实现更好的追踪性能。理论分析与仿真结果表明,在攻击数量大幅增长的情况下,该方案的误报率基本不变,与同类方案相比,只需更少的数据包即可在较短时间内重构攻击路径。
This paper proposes a novel Deterministic Packet Marking(DPM) scheme to trace the cross-regional source of Distributed Denial of Service(DDoS) attack. It adopts a packet marking algorithm inspired by CRT, and combines DPM-RD scheme to achieve better performance. Theoretical analysis and simulations reveal that the increasing number of attacks do not effect the false positive rate significantly, and compared with similar schemes, the scheme can reconstruct attack path in a comparatively short time with less packets.
出处
《计算机工程》
CAS
CSCD
北大核心
2010年第22期168-169,172,共3页
Computer Engineering
基金
南京邮电大学青蓝计划基金资助项目(NY206055)
关键词
分布式拒绝服务攻击
追踪
包标记
跨区域
Distributed Denial of Service(DDoS) attack
tracking
Packet Marking(PM)
cross-regional