检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:吕爱丽[1] 叶小涛[1] LV Ai-li, YE Xiao-tao (Modem Education Technology Center, Henan Polytechnic University, Jiaozuo 454010, China)
机构地区:[1]河南理工大学现代教育技术中心,河南焦作454010
出 处:《电脑知识与技术》2009年第6期4132-4133,4144,共3页Computer Knowledge and Technology
摘 要:提出了一个新的包标记方案,分别部署于源端和目的端供应商,主要用来描绘DDoS攻击流特征。这些特征对于受害者过滤攻击非常有效。在过滤方面,提出了一个比率控制方案,通过限制攻击流并保持合法数据流不受影响来有效保护受害者。在经济方面,提供更好的安全措施可以作为ISP对客户的增值服务,因此也就更有积极性来部署。In this paper, we propose new packet marking models. It based on source and destination-end ISP and used for characterizing DDoS attack streams. Such common characterization can be used to make filtering by the victim more effective. In terms of filtering, we propose a rate control scheme that protects destination domains by limiting the amount of traffic during an attack, while leaving a large percentage of legitimate traffic unaffected. On economic front, it offer enhanced security protection against such attacks as a value-added service to providers' customers, and hence offer positive incentives for them to deploy the proposed models.
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.222