基于漫游蜜罐的DDoS防御模型设计  

Design of defense model based on roaming honeypot for DDoS attacks

在线阅读下载全文

作  者:厉章忠[1] 王以刚[1] 

机构地区:[1]东华大学计算机科学与技术学院,上海201620

出  处:《计算机工程与应用》2009年第33期93-95,共3页Computer Engineering and Applications

摘  要:针对当前DDoS防御方法的不足,提出了一种基于漫游蜜罐的DDoS两阶段防御模型。该模型在第一阶段根据DDoS攻击的初期特征,建立简单高效的统计预警模型,并触发下一阶段防御;在第二阶段,应用秩和检验法自动选取检测特征,根据到重心的距离甄别合法与非法流,并对合法流进行漫游。实验结果表明,该模型能较早发现攻击,检测精度高,响应及时。This paper proposes a two-phase model using roaming honeypot to prevent DDoS attacks due to the deficiency of present detection algorithms.In the first phase,in order to detect the attacks earlier and evoke the next phase,a simple and efficient statistical model is made in the probing stage of DDoS attacks.Then in the second phase,a set of effective detection characteristics is automatically chosen,using rank sum test,to compute distances from barycenter,which is able to differentiate between legal and illegal flows and prepare for roaming the legitimate flows timely.The experimental results show the effectiveness of the model in detecting and responding DDoS attacks.

关 键 词:漫游蜜罐 DDOS攻击 秩和检验 防御模型 

分 类 号:TP301.6[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象