首页> 外文会议>35th Annual IEEE Conference on Local Computer Networks >Lightweight DDoS flooding attack detection using NOX/OpenFlow
【24h】

Lightweight DDoS flooding attack detection using NOX/OpenFlow

机译:使用NOX / OpenFlow进行轻量级DDoS泛洪攻击检测

获取原文

摘要

Distributed denial-of-service (DDoS) attacks became one of the main Internet security problems over the last decade, threatening public web servers in particular. Although the DDoS mechanism is widely understood, its detection is a very hard task because of the similarities between normal traffic and useless packets, sent by compromised hosts to their victims. This work presents a lightweight method for DDoS attack detection based on traffic flow features, in which the extraction of such information is made with a very low overhead compared to traditional approaches. This is possible due to the use of the NOX platform which provides a programmatic interface to facilitate the handling of switch information. Other major contributions include the high rate of detection and very low rate of false alarms obtained by flow analysis using Self Organizing Maps.
机译:在过去的十年中,分布式拒绝服务(DDoS)攻击已成为主要的Internet安全问题之一,尤其威胁到公共Web服务器。尽管DDoS机制已广为人知,但由于正常流量与无用数据包之间的相似性(由受感染的主机发送给受害主机),其检测是一项非常艰巨的任务。这项工作提出了一种基于流量特征的DDoS攻击检测的轻量级方法,其中与传统方法相比,这种信息的提取开销非常低。由于使用了NOX平台,这是可能的,该平台提供了程序化的界面来简化开关信息的处理。其他主要贡献包括通过使用自组织映射进行流量分析获得的高检测率和极低的误报率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号