首页> 外国专利> DISTRIBUTED DENIAL OF SERVICE ATTACK DETECTION METHOD AND ASSOCIATED DEVICE

DISTRIBUTED DENIAL OF SERVICE ATTACK DETECTION METHOD AND ASSOCIATED DEVICE

机译:分布式拒绝服务攻击检测方法及相关设备

摘要

Disclosed in embodiments of the present invention are a distributed denial of service (DDoS) attack detection method and associated device, applied to a software defined network (SDN), wherein the SDN comprises a controller and at least one edge switch. The method comprises: monitoring first request information in a preset first window, and calculating a current request processing rate of a target device in an SDN with respect to the first request information, wherein the first request information is a request data flow needed to be processed by a controller and transmitted to the controller by an edge switch corresponding to the target device; determining, according to the current request processing rate, whether the target device is in an abnormal state; if so, querying flow table match information corresponding to the target device; and determining, according to the flow table match information, whether the target device is under a DDoS attack. The present invention can improve detection accuracy of a DDoS attack on an SDN.
机译:在本发明的实施例中公开了一种应用于软件定义网络(SDN)的分布式拒绝服务(DDoS)攻击检测方法和相关设备,其中,SDN包括控制器和至少一个边缘交换机。该方法包括:在预设的第一窗口中监视第一请求信息,并针对该第一请求信息计算SDN中目标设备的当前请求处理速率,其中该第一请求信息为需要处理的请求数据流通过控制器,并通过与目标设备相对应的边缘交换机发送给控制器;根据当前请求处理速率,确定目标设备是否处于异常状态;如果是,则查询流表与目标设备对应的匹配信息;根据流表匹配信息,确定目标设备是否受到DDoS攻击。本发明可以提高对SDN的DDoS攻击的检测精度。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号