摘要
提出了一种分布式的基于对P2P网络中各节点进行分级的DDoS攻击抑制方法。采集了多个能分别反映当前节点本身或周围节点网络状况的评级因子,并通过不确定性推理确定当前节点分级值。分级值决定转发率。使用线性分类作为丢包策略对需发送数据包进行分组、丢弃,以降低误报率。仿真实验表明该方法能够有效抑制P2P网络上的DDoS攻击,提高整个网络抗攻击弹性。
A novel distributed method based on peer level model is presented to inhibit DDoS attack.The level model collects four factors including the behaviors of the current peer and its network status to evaluate level value by uncertain inference.Forwarding rate is decided by level value.The data on each peer are sorted by linear classifier and then discarded according to level value.Simulation experiment indicates this method could inhibit DDoS attack and enhance resilience of P2P overlay network.
出处
《电子科技大学学报》
EI
CAS
CSCD
北大核心
2011年第1期85-89,共5页
Journal of University of Electronic Science and Technology of China
基金
中央高校基本科研业务费专项资金(ZYGX2009J090)
关键词
分布式拒绝服务攻击
网络安全
覆盖网
分类器
distributed denial of service
network security
overlay network
pattern classification