首页> 外文会议>Annual Institute of Electrical and Electronics Engineers SMC Information Assurance Workshop >Investigation of pushback based detection and prevention of network bandwidth attacks
【24h】

Investigation of pushback based detection and prevention of network bandwidth attacks

机译:基于回力的检测和预防网络带宽攻击的研究

获取原文

摘要

Pushback approach has been applied for the detection and prevention against DDoS attacks by identifying the destination IP addresses in the dropped packets when congestion happens. The identified destination IP addresses are used to guide the subsequent packet dropping at both local router and upstream routers so that the total bandwidth can be controlled within a desired range. This paper investigates an application of pushback approach for the detection and prevention of more general network bandwidth attacks based on the profiles of destination port distribution instead of destination IP addresses. The new approach can be used to detect and prevent against the attacks like Internet worms. The investigation applies the long trace dataset of NLANR -^sCESCA-I and an Internet Worm Propagation simulator to simulate the generation of profiles and the detection of the Internet CodeRed worm. The dataset statistics and simulation results demonstrate the effectiveness of the new approach in the detection and prevention of Internet worms.
机译:通过识别拥塞时,通过识别丢弃数据包中的目的IP地址来应用反对DDOS攻击的检测和预防。所识别的目标IP地址用于指导在本地路由器和上游路由器处丢弃后续数据包,以便可以在期望的范围内控制总带宽。本文研究了基于目的地端口分发的配置文件而不是目的地IP地址检测和预防更多通用网络带宽攻击的回顾和预防的推送方法。新方法可用于检测和防止互联网蠕虫等攻击。该调查适用NLANR - ^ SCESCA-I的长跟踪数据集和互联网蠕虫传播模拟器,以模拟概要的生成和互联网编辑蠕虫的检测。 DataSet统计和仿真结果表明了新方法在互联网蠕虫的检测和预防方面的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号