针对应用层DDoS(application layer DDoS,App-DDoS)攻击,提出一种基于用户忠实度的ULDM(user loyalty defense model)防御模型,其根据用户对网站的忠实程度来区分正常用户和攻击用户。用户忠实度包含访问频率忠实度和行为忠实度,行为忠实度又包括历史行为忠实度和当前行为忠实度。从用户长期以来在请求频率和请求负载两方面的表现对用户行为进行评估,得到用户行为忠实度,根据用户长期以来对网站的访问频率得到用户访问频率忠实度;通过调度模块根据用户忠实度对请求进行调度。模拟实验验证了该模型的有效性。
A defense model--ULDM (user loyalty defense model) for the application layer DIDOS (App-DDoS) attack was pro- posed based on the user loyalty. Normal users and attack users were identified based on the degree of loyalty. The user loyalty consisted of the access frequency loyalty and the behavior loyalty. The behavior loyalty included the history behavior loyalty and the current behavior loyalty. The performance of user behavior was evaluated through the request frequency and the ratio of high load request in a long time, and then the user behavior loyalty was obtained. The access frequency loyalty was computed based on the access frequency of each user. Through policy dispatching, the request was scheduled based on the user loyalty. Simula- tion results show the effectiveness of the defense model.