位置:成果数据库 > 期刊 > 期刊详情页
基于用户信誉值防御DDoS攻击的协同模型
  • 期刊名称:通信学报
  • 时间:0
  • 页码:12-20
  • 语言:中文
  • 分类:TP393.08[自动化与计算机技术—计算机应用技术;自动化与计算机技术—计算机科学与技术]
  • 作者机构:[1]河北大学数学与计算机学院网络技术研究所,河北保定071002
  • 相关基金:基金项目:国家自然科学基金资助项目(60873203);河北省自然科学基金资助项目(F2008000646);河北省教育厅自然科学基金重点项目(ZH2006006)
  • 相关项目:基于实体行为特征的动态信任关系管理模型
中文摘要:

提出了一种基于用户信誉值防御DDoS攻击协同(CDDACR,cooperation defense DDoS attack based on client reputation)模型来检测和防御DDoS攻击。该模型在逻辑上由2个检测代理构成:路由器端的RDA(routerdetection agent)和服务器端的SDA(serverdetection agent)。RDA对用户数据流进行粗粒度检测,旨在过滤具有明显DDoS攻击特征的恶意数据流;SDA对用户数据流进行细粒度检测,检测并过滤恶意的狡猾攻击和低流量攻击,RDA和SDA协同工作来实时监测网络状况。实验结果表明,CDDACR模型能实时地识别和防御DDoS攻击,并且在异常发生时有效地阻止服务器被攻击的可能性。

英文摘要:

The CDDACR (cooperation defense DDoS attack based on client reputation) model was presented to detect and defend the DDoS attack. Two detection agents made up of the CDDACR model logically: the RDA which set up on the router and the SDA which set up on the server. RDA coarse-grained detected the traffic to filter out the obvious unau- thorized clients' traffic; SDA fine-grained detected the client's traffic to identity the cunning attack and low-flow attack from the communication. Therefore, RDA and SDA together detected the client's network status in realtime. The experimental results show the CDDACR model can detect and defend the DDoS attack in realtime, and reduce the probability of server be attacked when the network is on the abnormity.

同期刊论文项目
同项目期刊论文