自治系統(tǒng)的攻擊入口追溯技術(shù)研究
A Study on IP Traceback of DDoS Attack Ingress within an Autonomous System
-
摘要: 針對(duì)因特網(wǎng)上的DDoS攻擊,捉出一種新的以自治系統(tǒng)為單位的攻擊入口追溯模型,通過(guò)在入口鏈路端進(jìn)行地址標(biāo)記,受害主機(jī)能以較低的運(yùn)算復(fù)雜度還原出攻擊入口。詳細(xì)描述了算法的物理模型和數(shù)學(xué)依據(jù),給出了還原虛報(bào)率和關(guān)聯(lián)函數(shù)的理論公式。對(duì)自治系統(tǒng)結(jié)構(gòu)與出入口鏈路的關(guān)系作了闡述,并討論了該模型的部署應(yīng)用。具體的示例和試驗(yàn)表明,該算法效果理想,具有理論和衫價(jià)值。Abstract: To defend against DDoS attacks on Internet, a new scheme called Ingress Address Marking (IAM) within an Autonomous System (AS) is proposed, with which the IP addresses of the ingress can be embedded into the forwarding packets. A victim can traceback the addresses of the attack ingress in a low complexity by analyzing the marking information. Besides the physical model, the mathematical formulation of false positive ratio and correlation function are provided. The relationship of the ingress link and the structure of AS is reviewed. The construction and deployment of IAM are discussed. Simulation results have shown that this scheme has a good performance and is valuable on both theory and application.
-
計(jì)量
- 文章訪問(wèn)數(shù): 2248
- HTML全文瀏覽量: 121
- PDF下載量: 677
- 被引次數(shù): 0