Author Login Chief Editor Login Reviewer Login Editor Login Remote Office

Computer Engineering ›› 2006, Vol. 32 ›› Issue (10): 154-156.

• Security Technology • Previous Articles     Next Articles

DDoS Detection in High Speed Network

CAI Weijun1,2, ZHONG Haijun1,2   

  1. 1. Department of Computer Science &Technology, Nanjing University, Nanjing 210093;2. State Key Laboratory for Novel Software Technology, Nanjing University, Nanjing 210093
  • Online:2006-05-20 Published:2006-05-20

高速网络下的 DDoS 检测

蔡玮珺 1,2,仲海骏1,2   

  1. 1. 南京大学计算机科学与技术系,南京 210093;2. 南京大学软件新技术国家重点实验室,南京 210093

Abstract: DDoS attack is one of the problems in the network security. Especially in high speed network, detection system has much more data to process. The detection strategy which is taken and the system processing ability effect the rate and response speed of DDoS detection directly. This paper proposes the DDoS detection system (DDES) in high speed network basing protocol analysis; DDES statistically analyzes the connection in danger state. DDES uses the distributed framework, many probes cooperate to analyze and process in order to enhance processing performance.Also, DDES can interdict the attack sources working in network edge service in the same time

Key words: DDoS attack; High speed network; IDS

摘要: 分布式拒绝服务(DDoS)攻击是长期困扰网络安全领域的问题之一。特别是高速网络下,检测系统需要处理大量的数据,其检测策略和系统处理能力直接影响到DDoS 检测的准确率和响应速度。该文提出了在高速网络下的DDoS 检测系统DDES (DDoS DetectionSystem)。DDES 在协议分析的基础上,对处于危险状态的连接进行统计分析;它采用分布式的结构,多个探测子节点协同分析处理以提高处理性能;同时配合网络边缘设备对攻击源实施阻断。

关键词: DDoS 攻击;高速网络;入侵检测