【24h】

Rule-Based Anomaly Detection of Inter-domain Routing System

机译:域间路由系统基于规则的异常检测

获取原文
获取原文并翻译 | 示例

摘要

Inter-domain routing (IDR) system is a critical part of the Internet infrastructure. However, anomalies exist in BGP routing behaviors because of BGP misconfigurations, router malfunctions or deliberate attacking. To help secure the IDR system, this paper presents a rule-based framework and a rich set of detection rules to identify the abnormal routing behaviors. The detection rules are categorized into General Anomaly-detection Rules (GADRs) and Special Anomaly-detection Rules (SADRs), and they work together with the Basic Models and the Generated Models of the Internet respectively. Under the proposed framework, a prototype system, ISP-Health, is implemented, which can find out various abnormal routes and complex hidden routing attacks.
机译:域间路由(IDR)系统是Internet基础结构的关键部分。但是,由于BGP配置错误,路由器故障或蓄意攻击,BGP路由行为中存在异常。为了帮助保护IDR系统,本文提出了一个基于规则的框架和丰富的检测规则集,以识别异常路由行为。检测规则分为通用异常检测规则(GADR)和特殊异常检测规则(SADR),它们分别与Internet的基本模型和生成的模型一起使用。在提出的框架下,实现了一个原型系统ISP-Health,该系统可以发现各种异常路由和复杂的隐藏路由攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号