摘要
针对低速率拒绝服务(DoS)攻击难以检测的问题,提出了采用短时分析技术检测和防御低速率DoS攻击的方法。该方法用短时过界率实现低速率DoS攻击的检测,用短时幅度差(SMD)防止检测过程中的误报。短时分析技术和传统的频域变换方法比较,用更低的时间复杂度实现低速率DoS攻击的检测;用修正的短时自相关函数实现攻击周期估计,估计的周期应用在周期规避方法中实现低速率DoS攻击的防御,周期规避防御方法改进了已有的协议修正防御方法。理论分析和仿真结果证明了短时分析技术在实现低速率DoS攻击的检测防御方面具有可行性和优越性。
The short-time analysis technique was applied to detecting and resisting low-rate DoS (denial of service) attacks. The method implements the detection of low-rate DoS attacks by using the short-time threshold-crossing rate, and realizes the prevention of error reporting in the detecting process by using the short-time magnitude difference (SMD). The short-time analysis technique can help to estimate the attack period, and the estimated period can be used to prevent low-rate DoS attacks. The simulation results show the method using the short-time analysis technology outperforms the traditional frequency-domain transform method.
出处
《高技术通讯》
CAS
CSCD
北大核心
2011年第9期928-933,共6页
Chinese High Technology Letters
基金
863计划(2008AA011004)资助项目.
关键词
低速率DoS攻击
短时分析
短时过界率
短时幅度差(SMD)
周期估计
low-rate DoS attack, short-time analysis, short-time threshold-crossing rate, short-time magnitude difference (SMD), period estimation