【24h】

Traceback DRDoS Attacks

机译:追溯DRDoS攻击

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

At present, researchers have already proposed many methods for tracing DoS or DDoS attack, but few attention is put on DRDoS (Distributed Reflector Denial of Service) traceback. In DRDoS, the slaves hide behind the innocent reflectors, which makes the general DoS or DDoS traceback methods be hard to apply to DRDoS traceback. In this paper, we propose a collaborative traceback method-ADPM (Authenticated Deterministic Packet Marking) to trace DRDoS attack. In ADPM, routers mark request packets, log request packets' mark information and add corresponding logging to response packets, so victims can locate slaves when suffered DRDoS attack. Analysis and simulation results show that ADPM has the following advantages: requires small memory to logs the mark information; be able to resist forging mark information; can be deployed conveniently and incrementally; both the false positive and the number of packets needed for path reconstruction are small.
机译:目前,研究人员已经提出了许多跟踪DoS或DDoS攻击的方法,但是对DRDoS(分布式反射器拒绝服务)追溯的关注却很少。在DRDoS中,从属设备隐藏在无害的反射器后面,这使得常规DoS或DDoS追溯方法很难应用于DRDoS追溯。在本文中,我们提出了一种协作式追溯方法-ADPM(经过身份验证的确定性数据包标记)来跟踪DRDoS攻击。在ADPM中,路由器标记请求数据包,记录请求数据包的标记信息,并在响应数据包中添加相应的日志记录,以便受害者在遭受DRDoS攻击时可以找到从站。分析和仿真结果表明,ADPM具有以下优点:需要较小的内存来记录标记信息。能够抵制伪造商标信息;可以方便,逐步地部署;误报和路径重建所需的数据包数量都很少。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号