摘要
传统的网络防御技术在云计算环境下难以抵御DDoS攻击。针对云计算网络流量的行为特征,提出了一种云计算环境下的基于用户身份认证超载检测和网络流量负载平衡策略的DDoS攻击检测防御模型。该模型对访问云计算数据中心的用户进行身份认证,并通过对异常流量的分层处理来满足云计算服务的数据传输效率与安全性要求。仿真实验结果表明,该模型可有效地检测防御云计算环境下的DDoS攻击行为。
For the conventional network defense technologies, it is hard to defend against the DDoS attacks in cloud computing environment. According to the behavior characteristics of the cloud computing network flow, it proposes a model for the detecting and the defending of the DDoS attacks in cloud computing environment based on the overload detection of user identity authentication and the load balancing strategy of network flow. To meet the requirements of data transmission efficiency and the security of cloud computing services, the proposed model authenticates the identity of users who access the data center and hierarchically processe the abnormal network flow. The simulation results have shown that the proposed model can effectively detect and defend the DDoS attacks to the data center in cloud computing environment.
出处
《微型电脑应用》
2016年第11期23-25,29,共4页
Microcomputer Applications
基金
贵州省科学技术基金(黔科合J字[2011]2198号)
贵州大学青年教师科研基金(贵大自青基合字(2012)018号)
关键词
云计算
DDOS攻击防御
流量认证
负载平衡
Cloud computing
DDoS attack defense
Flow certification
Load balancing