首页> 外国专利> SVM-SOM DDoS SYSTEM AND METHOD FOR DDoS DETECTION BASED ON SVM-SOM COMBINATION

SVM-SOM DDoS SYSTEM AND METHOD FOR DDoS DETECTION BASED ON SVM-SOM COMBINATION

机译:基于SVM-SOM组合的SVM-SOM DDoS检测系统及方法

摘要

Provided are an open flow controller having an SVM-SOM combination-based DDoS detection system implemented therein, and a method thereof. The system is configured to collect flow information according to a traffic from an open flow switch, extract a plurality of attributes preset for each collected flow, classify a traffic type of the collected flow, classify an attack flow on the basis of at least one first attribute among attributes extracted through an SVM corresponding to a classified traffic type among multiple SVMs, determine whether a suspicious pattern is present through an SOM on the basis of the number of second attributes greater than the number of first attributes among the extracted attributes in a case of a flow which is not classified as an attack flow through the SVM, and classify an attack type for a corresponding flow when the attack flow is classified as an attack flow through the SVM or as a suspicious pattern through the SOM.
机译:提供一种具有在其中实现的基于SVM-SOM组合的DDoS检测系统的开放式流量控制器及其方法。该系统被配置为根据来自开放式流量交换机的流量来收集流量信息,提取针对每个收集到的流量预设的多个属性,对收集到的流量的流量类型进行分类,基于至少一个第一来对攻击流进行分类。在与多个SVM中的分类的业务类型相对应的,通过SVM提取的属性中的“属性”属性中,基于第二属性的数目大于在情况下所提取的属性中的第一属性的数目,确定是否通过SOM存在可疑模式。对未被分类为通过SVM的攻击流的流进行分类,并且当攻击流被分类为通过SVM的攻击流或通过SOM的可疑模式时,将攻击类型分类为对应的流。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号