自治系統(tǒng)的攻擊入口追溯技術(shù)研究
A Study on IP Traceback of DDoS Attack Ingress within an Autonomous System
-
摘要: 針對因特網(wǎng)上的DDoS攻擊,捉出一種新的以自治系統(tǒng)為單位的攻擊入口追溯模型,通過在入口鏈路端進行地址標記,受害主機能以較低的運算復(fù)雜度還原出攻擊入口。詳細描述了算法的物理模型和數(shù)學(xué)依據(jù),給出了還原虛報率和關(guān)聯(lián)函數(shù)的理論公式。對自治系統(tǒng)結(jié)構(gòu)與出入口鏈路的關(guān)系作了闡述,并討論了該模型的部署應(yīng)用。具體的示例和試驗表明,該算法效果理想,具有理論和衫價值。
-
關(guān)鍵詞:
- 分布式拒絕服務(wù)攻擊; 追溯; 自治系統(tǒng); 入口地址標記; 虛報率
Abstract: To defend against DDoS attacks on Internet, a new scheme called Ingress Address Marking (IAM) within an Autonomous System (AS) is proposed, with which the IP addresses of the ingress can be embedded into the forwarding packets. A victim can traceback the addresses of the attack ingress in a low complexity by analyzing the marking information. Besides the physical model, the mathematical formulation of false positive ratio and correlation function are provided. The relationship of the ingress link and the structure of AS is reviewed. The construction and deployment of IAM are discussed. Simulation results have shown that this scheme has a good performance and is valuable on both theory and application. -
計量
- 文章訪問數(shù): 2238
- HTML全文瀏覽量: 118
- PDF下載量: 674
- 被引次數(shù): 0