作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (13): 172-173,. doi: 10.3969/j.issn.1000-3428.2009.13.059

• 安全技术 • 上一篇    下一篇

基于SOA的DDoS网络攻击防御框架

毕小明1,2,谭文安1   

  1. (1. 浙江师范大学数理与信息工程学院,金华 321004;2. 浙江温州科技职业学院计算机系,温州 325006)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-07-05 发布日期:2009-07-05

基于SOA的DDoS网络攻击防御框架

BI Xiao-ming1,2, TAN Wen-an1   

  1. (1. College of Mathematics, Physics and Information Engineering, Zhejiang Normal University, Jinhua 321004; 2. Computer Department, Wenzhou Vocational College of Science and Technology, Wenzhou 325006)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-07-05 Published:2009-07-05

摘要: 给出一种运用SOA理念构建的DDoS防御框架,实现在攻击源端阻挡入侵流量。通过引入SOA和覆盖网络,使得框架和外界保持松耦合,并实现其通用性的底层架构,在此基础上基于加解密方法构建可保障架构安全的凭证体系。实验表明,该框架可有效保护正常客户机和服务网络不受恶意攻击者损害。

关键词: 面向服务的架构, 分布式拒绝服务, 防御

Abstract: This paper proposes a Service Oriented Architecture(SOA) based DDoS defense framework to filter the anomaly flow in the source of the attack. By introducing SOA and overlay network, the framework remains loosely coupled with outside world and the bottom part of the framework is combined with encryption and decryption to construct a secure certification system. Experiments show that the framework can effectively protect normal client and service networks from malicious damage.

Key words: Service Oriented Architecture(SOA), DDoS, defense

中图分类号: