首页> 外文会议>International Conference on Computational Science and Its Applications(ICCSA 2006) pt.2; 20060508-11; Glasgow(GB) >Inter-domain Security Management to Protect Legitimate User Access from DDoS Attacks
【24h】

Inter-domain Security Management to Protect Legitimate User Access from DDoS Attacks

机译:域间安全管理可保护合法用户访问不受DDoS攻击

获取原文
获取原文并翻译 | 示例

摘要

In this paper, we propose a cooperative inter-domain security management to protect access of legitimate users from the DDoS attacks exploiting randomly spoofed source IP addresses. We assume that Internet is divided into multiple domains and there exists one or more domain security manager in each domain, which is responsible for identifying hosts within the domain. The security management cooperation is achieved in two steps. First, a domain security manager forwards information regarding identified suspicious attack flows to neighboring managers. Secondly, the domain security manager verifies the attack upon receiving return messages from the neighboring managers. The management method proposed in this paper is designed not only to prevent network resources from being exhausted by the attacks but also to increase the possibility that legitimate users can fairly access the target services. Through the experiment on a test-bed, the proposed method was verified to be able to maintain high detection accuracy and to enhance the normal packet survival rate.
机译:在本文中,我们提出了一种协作域间安全性管理,以保护合法用户的访问免受利用随机欺骗的源IP地址的DDoS攻击的侵害。我们假设Internet被划分为多个域,并且每个域中都存在一个或多个域安全管理器,该管理器负责识别域内的主机。安全管理合作分两个步骤完成。首先,域安全管理器将有关已识别可疑攻击流的信息转发给相邻管理器。其次,域安全管理器在收到来自相邻管理器的返回消息后验证攻击。本文提出的管理方法不仅旨在防止网络资源被攻击耗尽,而且还增加了合法用户公平访问目标服务的可能性。通过在试验台上的实验,验证了该方法能够保持较高的检测精度,提高正常的数据包生存率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号