首页> 外国专利> SNMP-BASED TRAFFIC FLOODING ATTACK DETECTING SYSTEM USING SVM

SNMP-BASED TRAFFIC FLOODING ATTACK DETECTING SYSTEM USING SVM

机译:支持向量机的基于SNMP的交通流量攻击检测系统

摘要

Disclosed is an SNMP-based traffic flooding attack detecting system capable of detecting attack traffic by analyzing traffic in a network, comprising an attack type database (DB) storing an SNMP type of attack traffic; a first stage analyzing unit collecting traffic in a network and determining whether the collected traffic is attack traffic by using a support vector machine (SVM); a second stage analyzing unit receiving traffic determined as attack traffic from the first stage analyzing unit, analyzing an SNMP type of the received traffic, and storing the analyzed traffic in the attack type DB; and a real-time handling unit receiving the attack traffic from the first stage analyzing unit, comparing a type of the received traffic with the SNMP type stored in the attack type DB, and handling the attack traffic when the two types are identical. By the SNMP-based traffic flooding attack detecting system, a traffic attack can be quickly detected in real time and a service can be managed by limiting it partially according to protocols against a flooding attack.;COPYRIGHT KIPO 2014
机译:公开了一种基于SNMP的流量泛洪攻击检测系统,能够通过分析网络中的流量来检测攻击流量,包括:攻击类型数据库(DB),存储了SNMP类型的攻击流量。第一阶段分析单元,通过使用支持向量机(SVM),收集网络中的流量,并确定所收集的流量是否为攻击流量;第二阶段分析单元从第一阶段分析单元接收被确定为攻击流量的流量,分析接收到的流量的SNMP类型,并将所分析的流量存储在攻击类型DB中;实时处理单元,其从第一级分析单元接收攻击流量,将接收到的流量的类型与攻击类型数据库中存储的SNMP类型进行比较,并在两种类型相同时进行处理。通过基于SNMP的流量泛洪攻击检测系统,可以快速实时地检测流量攻击,并可以根据协议部分限制流量泛洪攻击,从而对服务进行管理。; COPYRIGHT KIPO 2014

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号