首页 | 本学科首页   官方微博 | 高级检索  
     

大流量优先的实时IP随机包标记反向追踪
引用本文:李强,朱弘恣,鞠九滨.大流量优先的实时IP随机包标记反向追踪[J].计算机应用,2005,25(7):1498-1501.
作者姓名:李强  朱弘恣  鞠九滨
作者单位:吉林大学,计算机科学与技术学院,吉林,长春,130012;吉林大学,计算机科学与技术学院,吉林,长春,130012;吉林大学,计算机科学与技术学院,吉林,长春,130012
基金项目:国家自然科学基金重大研究计划项目(90204014)
摘    要:在现有IP随机包标记反向追踪算法实时性的研究基础上,分析了标记概率、推测路径需要的数据包数量和攻击路径距离的关系,提出一个大流量优先的实时IP随机包标记反向追踪方法LTFMS,利用路由器节点当前流量统计,受害者可在最短时间内推测出主要攻击路径。通过建立模拟测试环境实验分析,对于大规模DDoS攻击,该方法在相同时间内可比现有方法推测出更多的攻击路径。

关 键 词:IP反向追踪  包标记  实时性  DDoS
文章编号:1001-9081(2005)07-1498-04
修稿时间:2005-03-09

Larger-traffic-first packet marking for real-time IP traceback
LI Qiang,ZHU Hong-zi,JU Jiu-bin.Larger-traffic-first packet marking for real-time IP traceback[J].journal of Computer Applications,2005,25(7):1498-1501.
Authors:LI Qiang  ZHU Hong-zi  JU Jiu-bin
Affiliation:School of Computer Science and Technology, Jilin University
Abstract:Based on the current research on improving real-time PPM algorithms in IP traceback, the relations among marking probability, traffic volume for constructing an attack path and the distance of the attacking path were analysed. And an approach of real-time IP tracebacking which deploys larger traffic first probabilistic packet marking scheme (LTFMS) was proposed. According to the statistics on the present traffic of routers, a victim could construct a major attacking path in minimum time. For large-scale DDoS attacks, by establishing a simulated test environment and experiment analysis, LTFMS can construct more attacking paths than the existing schemes within the same time.
Keywords:IP traceback  packet marking  real-time  DDoS
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号