Computer Engineering and Applications ›› 2009, Vol. 45 ›› Issue (21): 132-135.DOI: 10.3778/j.issn.1002-8331.2009.21.039

• 理论科学研究 • Previous Articles     Next Articles

Novel approach of DDoS forewarning

LIU Qiang1,YIN Jian-ping1,CHENG Jie-ren 1,2,CAI Zhi-ping1   

  1. 1.School of Computer Science,National University of Defense Techonology,Changsha 410073,China
    2.Department of Mathematics,Xiangnan University,Chenzhou,Hunan 423000,China
  • Received:2009-05-04 Revised:2009-06-22 Online:2009-07-21 Published:2009-07-21
  • Contact: LIU Qiang

一种新的DDoS攻击预警方法

刘 强1,殷建平1,程杰仁1,2,蔡志平1   

  1. 1.国防科学技术大学 计算机学院,长沙 410073
    2.湘南学院 数学系,湖南 郴州 423000
  • 通讯作者: 刘 强

Abstract: Research on DDoS attack is one of the hotspots in network security field.Forecasting the probability of DDoS attack is highly significative of defending and responding DDoS attack at its early stage.In this paper,a forewarning model for DDoS attack based on Probable Finite State Automation(PFSA) is proposed.Moreover,a method to calculate the probability of making attack and the degree of expectation threat is presented.Experiment indicates that the method proposed in this paper can calculate probability and expectation damage of DDoS attack effectively,which achieves the goal of early defence.

Key words: Distributed Denial of Service(DDoS) attack, forewarning model, Probable Finite State Automation(PFSA), feature extraction

摘要: DDoS攻击的研究是网络安全研究领域的一个研究热点。预测DDoS攻击发生的概率,对于早期防御和响应DDoS攻击具有重要意义。提出了一种基于概率有限状态自动机的DDoS攻击预警模型,给出了一种计算攻击成功概率和攻击期望威胁度的方法。实验表明,方法能有效地计算出DDoS攻击成功概率和期望威胁度,实现早期防御。

关键词: 分布式拒绝服务(DDoS)攻击, 预警模型, 概率有限状态自动机, 特征提取