首页> 外国专利> Method and device for simulating and detecting DDoS attacks in software defined networking

Method and device for simulating and detecting DDoS attacks in software defined networking

机译:在软件定义网络中模拟和检测DDoS攻击的方法和装置

摘要

The present disclosure provides a method and a device for simulating and detecting DDoS Attacks in software defined networking. The method comprises: adding zombie hosts in a preset linear increasing mode and an incremental mode, and launching stealthy DDoS Attacks on a data plane to a preset target switch in a software defined networking through all zombie hosts; synchronously updating a pre-built attack flow monitoring table on a controller of the networking according to updating of flow tables on all switches; periodically detecting the monitoring table to determine whether the monitoring table includes a monitoring table entry having existence duration over a preset duration threshold; and determining that a network flow corresponding to the monitoring table entry is a stealthy attack flow on the data plane of the networking when the monitoring table includes the monitoring table entry having the existence duration over the preset duration threshold.
机译:本公开提供了一种用于在软件定义的网络中模拟和检测DDoS攻击的方法和设备。该方法包括:以预设的线性递增模式和增量模式添加僵尸主机,并通过所有僵尸主机在软件定义的网络中向预定的目标交换机发起数据平面上的秘密DDoS攻击;根据所有交换机上流表的更新,同步更新组网控制器上的预建攻击流监控表;周期性地检测所述监控表,以确定所述监控表是否包括存在持续时间超过预设时长阈值的监控表项;当所述监控表包括存在时间超过所述预设时长阈值的监控表项时,确定所述监控表项对应的网络流为所述网络数据面上的隐身攻击流。

著录项

  • 公开/公告号US10536480B2

    专利类型

  • 公开/公告日2020-01-14

    原文格式PDF

  • 申请/专利权人 SHENZHEN UNIVERSITY;

    申请/专利号US201815922902

  • 发明设计人 QIAO YAN;QINGXIANG GONG;JIANYONG CHEN;

    申请日2018-03-15

  • 分类号H04L29/06;G06F17/50;

  • 国家 US

  • 入库时间 2022-08-21 11:28:23

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号