检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:徐涌霞[1] XU Yongxia(Department of Computer Science and Technology,Huaibei Vocational and Technical College,Huaibei 235000,China)
机构地区:[1]淮北职业技术学院计算机科学与技术系,安徽淮北235000
出 处:《成都工业学院学报》2024年第1期64-68,81,共6页Journal of Chengdu Technological University
基 金:安徽省高等学校省级质量工程项目(2020jyxm1707);淮北职业技术学院重点科研项目(2021-A-3)。
摘 要:为在数据样本回溯期内解决因本地信息熵值增大而造成的服务攻击问题,维护软件定义网络的运行安全性,提出入侵意图分析下的软件定义网络分布式拒绝服务(DDoS)攻击检测方法。按照软件定义网络场景重构原则,确定因果网转换标准,实现对识别参数的更新处理,完成攻击性行为的入侵意图分析,再定义DDoS数据集,根据攻击行为的时空特性,求解模型参数的取值范围,完成入侵意图分析下软件定义网络DDoS攻击检测方法的设计。实验结果表明,在该算法控制下数据样本回溯期为10 min,低于传统算法,能够较好维护软件定义网络的运行安全性。In order to solve the problem of service attack caused by the increase of local information entropy during the retrospective period of the data sample,and to maintain the operation security of software-defined network,a distributed denial of service(DDoS)attack detection method based on intrusion intention analysis was proposed.According to the principle of software-defined network scenario reconstruction,the conversion standard of causal network was determined,the update processing of identification parameters were realized,and the intrusion intention analysis of offensive behaviors was completed,and then,the DDoS data set was defined.The value range of model parameters was solved according to the spa6tio-temporal characteristics of attack behavior,and the detection method of software-defined network DDoS attack under intrusion intention analysis was completed.The experimental results show that the data sample backtracking period under the control of the proposed algorithm is 10 min,which is lower than the traditional algorithm,and can better maintain the operation security of software-defined networks.
关 键 词:软件定义网络 DDOS攻击 样本回溯期 本地信息熵 时空特性
分 类 号:TP393[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.147