计算机应用研究2011,Vol.28Issue(2):724-727,4.DOI:10.3969/j.issn.1001-3695.2011.02.090
一种基于Holder指数的DDoS攻击检测方法
DDoS attack detection method based on Holder exponent
摘要
Abstract
Based on the fractal structure of the large-scale network traffic aggregation, analyzed the fractal feature of network traffic from the perspective of the global and local scaling exponents. It used this feature to analyze the fractal parameters of abnomal network traffic, trying to identify the relationship between changes of these parameters and the emergence of DDoS. Experimental results show that network traffic have the self-similar phenomena over large-scale and the multi-fractal phenomena over-small scale. It presented a method of DDoS attack detection based on Holder exponent. On the DARPA/Lincoln laboratory intrusion detection evaluation data set 2000, the experimental result shows that this method can detect the attack quickly and accurately. When the intermittent DDoS attack happen, this method is more effective than the traditional method.关键词
分布式拒绝服务/自相似性/多重分形/Hurst参数/Holder指数分类
信息技术与安全科学引用本文复制引用
任义龙,刘渊..一种基于Holder指数的DDoS攻击检测方法[J].计算机应用研究,2011,28(2):724-727,4.基金项目
国家自然科学基金资助项目(60875036) (60875036)
高等学校科技创新工程重大项目培育资金资助项目(v200704) (v200704)