首页> 外文期刊>Ad-hoc & sensor wireless networks >Entropy-based DDoS Attack Detection in Cluster-based Mobile Ad Hoc Networks
【24h】

Entropy-based DDoS Attack Detection in Cluster-based Mobile Ad Hoc Networks

机译:基于熵的基于熵的DDOS攻击检测在基于群集的移动临时网络中

获取原文
获取原文并翻译 | 示例
       

摘要

Distributed denial of service attack is a huge threat to the security of mobile nodes and their communication in mobile ad hoc networks. In literature, several schemes have been suggested by the researchers but they failed to identify DDoS attacks with accuracy at their early stages. The idea of information theory is used in the proposed scheme to identify the randomness in the incoming flow by calculating the normalized entropy of cluster heads. Normalized entropy and packet rate values are compared with the entropy and packet rate thresholds respectively to identify the happening of suspicious activity and suspicious flows. The attack-related information extracted from suspicious flows is exchanged with the neighboring cluster heads to confirm the happening of DDoS attacks. Once the occurrence of DDoS attack is confirmed; all the traffic related to it will be dropped. Further cluster heads share attack-related information to neighboring clusters to achieve distributed defense. The proposed scheme detects the happening of DDoS attacks in short monitoring periods. The simulation results show that the proposed scheme detects 95% of DDoS attacks with high precision and low false alarm rates.
机译:分布式拒绝服务攻击是对移动节点安全性的巨大威胁及其在移动临时网络中的通信。在文献中,研究人员提出了几种方案,但他们未能以精确阶段识别DDOS攻击。信息理论的思想用于所提出的方案,通过计算群集头的标准化熵来识别传入流程中的随机性。将归一化熵和分组速率值与熵和分组率阈值进行比较,以确定可疑活动和可疑流动的发生。从可疑流中提取的攻击相关信息与相邻群集头部交换以确认DDO​​S攻击的发生。一旦确认了DDOS攻击的发生;与它相关的所有流量将被丢弃。进一步的群集头与邻近群集共享攻击相关信息以实现分布式防御。该方案在短期监测期内检测到DDOS攻击的发生。仿真结果表明,该方案检测了95%的DDOS攻击,具有高精度和低误报率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号