【期刊名称】《计算机应用研究》 【年(卷),期】2011(028)002
【摘要】基于宏观网络流量汇聚的分形结构,从流量的全局标度指数和局部标度指数出发,对网络流量的分形特性进行分析.利用这一特性对网络异常流量的分形参数进行分析,试图找出这些参数的变化与DDoS攻击的对应关系.实验结果表明,真实的网络流量在大尺度上是渐进自相似的,在小尺度上表现出多重分形的特性.于是提出了基于Holder指数的变化来检测DDoS攻击,对DARPA 2000年数据的实验表明,这种方法能够快速、准确地检测到攻击.对于间歇式DDoS攻击,此方法比传统方法有效.osed on the fractal structure of the large-scale network traffic aggregation, analyzed the fractal feature of network traffic from the perspective of the global and local scaling exponents. It used this feature to analyze the fractal parameters of abnomal network traffic, trying to identify the relationship between changes of these parameters and the emergence of DDoS. Experimental results show that network traffic have the self-similar phenomena over large-scale and the multi-fractal phenomena over-small scale. It presented a method of DDoS attack detection based on Holder exponent. On the DARPA/Lincoln laboratory intrusion detection evaluation data set 2000, the experimental result shows that this method can detect the attack quickly and accurately. When the
intermittent DDoS attack happen, this method is more effective than the traditional method. 【总页数】4页(724-727)
【关键词】分布式拒绝服务;自相似性;多重分形;Hurst参数;Holder指数 【作者】任义龙;刘渊
【作者单位】江南大学物联网工程学院,江苏,无锡,214062;江南大学物联网工程学院,江苏,无锡,214062;江南大学数字媒体学院,江苏,无锡,214062 【正文语种】中文 【中图分类】TP393.08 【文献来源】
https://www.zhangqiaokeyan.com/academic-journal-cn_application-research-computers_thesis/0201242031928.html 【相关文献】
1.一种基于融合特征集的DDoS攻击检测方法 [J], 陈世文; 黄万伟; 冶晓隆 2.基于数字信号处理的一种Shrew DDoS攻击检测方法 [J], 陈丹妮 3.SDN中一种基于熵值检测DDoS攻击的方法 [J], 韩子铮 4.一种基于RBF-NN的DDoS攻击检测方法 [J], 张静 5.一种基于小波分析的DDoS攻击检测方法 [J], 任义龙; 刘渊